permissions

Fail

Audited by Socket on Feb 24, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The fragment implements a legitimate administrative workflow for triaging agent permissions and contains no direct network exfiltration, obfuscation, or embedded malware. However, it performs high-impact local modifications to the agent's canonical allow list and lacks documented safeguards (validation, audit logging, rollback, restrictions on wildcards, multi-operator approval). This makes it sensitive: operational controls should be added before enabling or automating this skill to prevent accidental or malicious escalation of agent privileges.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 24, 2026, 12:31 PM
Package URL
pkg:socket/skills-sh/cerico%2Fmacfair%2Fpermissions%2F@69c2ee3938875919c725278fcff4d5a932d90334