headless-ghidra-batch-decompile

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Purpose and file access are coherent for a reverse-engineering workflow, and no explicit credential theft or exfiltration is shown. However, the skill requires an unverifiable external CLI and grants an AI agent decompilation/security-tooling capability, so it should be classified as SUSPICIOUS with high security risk rather than confirmed malware.

Confidence: 88%Severity: 78%
Audit Metadata
Analyzed At
May 1, 2026, 12:52 AM
Package URL
pkg:socket/skills-sh/ByteLandTechnology%2Fheadless-ghidra%2Fheadless-ghidra-batch-decompile%2F@1c40d82648411e1eb589bda274febc7512087ee1