predict-worknet

Warn

Audited by Socket on May 6, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
install.sh

This fragment is a typical remote binary installer, not an obvious in-script malware dropper. The main security issue is supply-chain trust: it downloads and installs a binary from GitHub 'latest' without checksum/signature verification and can run with elevated privileges during installation. macOS quarantine removal further reduces safety friction around an unverified executable. To mitigate, pin a specific release/tag/commit and verify the binary via published checksums or signature before chmod/move.

Confidence: 78%Severity: 68%
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's crypto prediction purpose matches some wallet and market actions, but its actual footprint is too risky: it installs and relies on opaque third-party CLIs, funnels wallet/auth operations through them, and directs the agent to perform continuous autonomous prediction-market actions for token rewards. The unverifiable binary dependency and credential-forwarding pattern materially elevate security risk.

Confidence: 87%Severity: 91%
Audit Metadata
Analyzed At
May 6, 2026, 02:06 AM
Package URL
pkg:socket/skills-sh/awp-worknet%2Fprediction-skill%2Fpredict-worknet%2F@fb532b064129e69c140f8f064159bfe02c5e175c