headless-ghidra-batch-decompile
Warn
Audited by Socket on May 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Purpose and file access are coherent for a reverse-engineering workflow, and no explicit credential theft or exfiltration is shown. However, the skill requires an unverifiable external CLI and grants an AI agent decompilation/security-tooling capability, so it should be classified as SUSPICIOUS with high security risk rather than confirmed malware.
Confidence: 88%Severity: 78%
Audit Metadata