home-assistant

Fail

Audited by Socket on Mar 24, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
.claude/settings.local.json

The manifest grants legitimate-looking WebFetch allowances but dangerously broad shell command permissions (Bash(source:*), Bash(find:*), Bash(grep:*), Bash(npx skills:*)). These allow remote code execution and wide local data access, enabling supply-chain and exfiltration attacks if fetched content or npm packages are malicious or compromised. Recommendations: apply least privilege — restrict Bash execution to specific, vetted scripts or disallow Bash(source:*); disable or narrowly scope npx usage; add explicit deny/whitelist for filesystem paths, arguments, and network endpoints; require integrity verification (hash/signature) of fetched scripts and packages; add runtime auditing and user approval gates for shell execution. Treat this manifest as a high-risk configuration until tightened.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 24, 2026, 06:33 PM
Package URL
pkg:socket/skills-sh/trtmn%2Fagent-skills%2Fhome-assistant%2F@609c5d04c57c527078b5c4acf322f101113a8d9c