remind

Fail

Audited by Socket on Mar 18, 2026

1 alert found:

Malware
MalwareHIGH
.clawnet/unsigned-skill.json

The fragment is highly suspicious: it carries a large opReturnHex payload that decodes to content implying remote payload delivery, script execution, and persistence mechanisms. This matches common supply-chain attack vectors where payloads are delivered via blockchain embeds and executed on the client, creating a potential backdoor or remote-control scenario. The presence of signatures and signer details could be intended to legitimize the payload, further increasing risk if provenance cannot be independently verified. Actionable steps include decoding opReturnHex, validating aipSignature against signerAddress, verifying the provenance and integrity of the embedded data, and inspecting downstream usage of the files list before any installation or execution.

Confidence: 85%Severity: 80%
Audit Metadata
Analyzed At
Mar 18, 2026, 11:22 PM
Package URL
pkg:socket/skills-sh/b-open-io%2Fprompts%2Fremind%2F@95ace7a0a3931f8516d980bd62a7967986d850e6