bonfire

Pass

Audited by Socket on Feb 28, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 28, 2026, 10:30 PM
Package URL
pkg:socket/skills-sh/andreadellacorte%2Fgroove%2Fbonfire%2F@e441daaf20ba58ef95f5e6e6e8aabd611401f9ea