quality-integration-test

Warn

Audited by Socket on Apr 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's purpose is coherent for local integration testing, and it does not show credential harvesting or off-box exfiltration. The main risks are autonomous multi-step Bash-enabled execution, moderate prompt-injection exposure from repository content, and unsafely interpolated argument-derived paths in a shell command. Overall this is a high-privilege testing orchestrator with meaningful operational risk, but not confirmed malware.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Apr 17, 2026, 01:15 AM
Package URL
pkg:socket/skills-sh/catlog22%2FMaestro-Flow%2Fquality-integration-test%2F@46aaad2f0ff006ef0da24ec7eaf687a9d2b6bdc3