mine

Warn

Audited by Socket on Apr 23, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
scripts/bootstrap.cmd

This is a minimal script-launcher wrapper that executes a bundled PowerShell script (bootstrap.ps1) using -ExecutionPolicy Bypass and forwards all caller arguments directly into that script. The fragment itself shows no explicit malicious actions, but the execution-policy bypass plus unconditional local script execution are notable risk indicators. Determination of actual malware/data theft/exfiltration requires reviewing bootstrap.ps1.

Confidence: 60%Severity: 62%
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's mining/validation purpose broadly matches its commands, but it combines supply-chain installs, hidden command execution, transitive skill installation, third-party gateway credential use, and autonomous crypto-adjacent actions. The main concern is disproportionate operational and financial scope for an agent skill, not confirmed malware.

Confidence: 82%Severity: 78%
Audit Metadata
Analyzed At
Apr 23, 2026, 05:07 AM
Package URL
pkg:socket/skills-sh/awp-worknet%2Fmine-skill%2Fmine%2F@1bbbde584c1f0e967e9e032ef57f98e8fbbdfc53