malware-analysis
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The malware-analysis skill is broadly coherent with its stated purpose: static and dynamic malware analysis with IOC extraction and reporting, integrated with external feeds for cross-referencing. Data flows to external services (VirusTotal/sandbox) and reliance on an API key are expected in such tooling but require robust secret handling, explicit data-sharing policies, and strong containment for dynamic analysis. The footprint is proportionate to the domain, but the external data transfers introduce privacy and supply-chain considerations that should be documented and governed. Overall, the footprint is BENIGN with notable security-conscious caveats (credential handling, data sharing).
Confidence: 98%
Audit Metadata