NYC

create-cowork-plugin

Pass

Audited by Socket on Feb 19, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 19, 2026, 09:57 AM
Package URL
pkg:socket/skills-sh/anthropics%2Fknowledge-work-plugins%2Fcreate-cowork-plugin%2F@3c23f153afa1377b43450d27d2f32eab4a2519e0