message-loader
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's stated purpose (filesystem-based message routing for WebSocket/IPC contexts) is coherent with the presented capabilities and examples. There are no evident credential requirements, no risky downloads, and no suspicious data flows in the documentation fragment. The risk profile is low-to-moderate, driven primarily by the absence of explicit security controls (auditing, input validation, access permissions) in the docs. Overall, the footprint aligns with a legitimate developer tool for message routing, with moderate emphasis on safe defaults that would benefit from explicit security guidance.
Confidence: 98%
Audit Metadata