deep-searcher-guide

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

Overall, the Deep Searcher Guide appears aligned with a legitimate on-prem/private research workflow using Milvus and RAG. The footprint is proportionate to its stated purpose, with normal credential handling patterns and standard deployment methods. The primary concerns relate to data flow boundaries: if users enable cloud or web integrations, or use cloud Milvus, data could leave the private environment. Explicit guidance on data residency, TLS verification, and credential handling would strengthen security posture. Given the presence of outbound API calls and potential cloud usage, classify as BENIGN with MEDIUM risk due to data flow to external services; treat as SUSPICIOUS only if cloud/web integrations are enabled without explicit user consent or without strong data governance policies.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 07:34 AM
Package URL
pkg:socket/skills-sh/wentorai%2Fresearch-plugins%2Fdeep-searcher-guide%2F@a223bdba406f1ad6cacb7a2b5fd0e2d87971f264
Security Audit — socket — deep-searcher-guide