caravo

Pass

Audited by Socket on Mar 9, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Mar 9, 2026, 12:36 PM
Package URL
pkg:socket/skills-sh/caravo-ai%2Fagent-skills%2Fcaravo%2F@9261d5e2fb7eadb70c4f352be3c4946532a8d3be