solana-audit

Warn

Audited by Socket on Mar 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s capabilities are broadly aligned with its stated purpose as a Solana audit workflow, and the provided evidence shows no external downloads, credential requests, or third-party data routing. However, it explicitly equips an AI agent to perform security auditing on smart contracts, which falls under high-risk offensive/security tooling for agents. Risk is driven by the capability itself and the recursive multi-agent analysis of untrusted code, not by malware indicators or exfiltration behavior.

Confidence: 88%Severity: 72%
Audit Metadata
Analyzed At
Mar 19, 2026, 03:57 PM
Package URL
pkg:socket/skills-sh/workersio%2Fspec%2Fsolana-audit%2F@45cb899e06a0907bcd3509cd4dcdbd46f1d2528b