agent-tools

Warn

Audited by Socket on Jul 7, 2026

2 alerts found:

SecurityAnomaly
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core AI-app purpose mostly matches the capabilities, and the installer appears same-service rather than obviously rogue, but the skill meaningfully expands trust and action scope: it installs additional skills, uploads local files to cloud services, and enables autonomous Twitter/X actions with real-world consequences. High security risk, but not confirmed malware.

Confidence: 85%Severity: 72%
AnomalyLOW
references/authentication.md

No direct malware is evidenced in the provided fragment because it contains only installation/authentication instructions. The primary concern is supply-chain risk from executing a network-fetched installer via `curl ... | sh` without demonstrated integrity verification or pinning. Credential-handling behavior is not shown; therefore storage and secret-leakage risks cannot be confirmed or ruled out from this snippet alone. Review and verify the actual distributed CLI/installer code and enforce integrity controls before use in sensitive environments.

Confidence: 60%Severity: 65%
Audit Metadata
Analyzed At
Jul 7, 2026, 11:42 PM
Package URL
pkg:socket/skills-sh/101-skills%2Fskills%2Fagent-tools%2F@185861e2bf963c11df93f5074d9088e53e73802af2c593155775239aab69f6f7
Security Audit — socket — agent-tools