headless-ghidra-evidence

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent and local-only, but the skill’s core dependency is an unspecified `ghidra-agent-cli` with no verifiable install or publisher information. That makes the execution trust disproportionate to the documentation provided, though there is no clear evidence of credential theft or data exfiltration in the skill text itself.

Confidence: 86%Severity: 78%
Audit Metadata
Analyzed At
May 1, 2026, 12:52 AM
Package URL
pkg:socket/skills-sh/ByteLandTechnology%2Fheadless-ghidra%2Fheadless-ghidra-evidence%2F@6ea4e9a97755473c8adc8228f4ea47fa1dfe7379