building-ai-agent-on-cloudflare

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill description and code fragment are broadly consistent with building a stateful, real-time AI agent on Cloudflare Workers using the Agents SDK. While there are questions about the feasibility of embedded SQLite in this environment and data handling specifics for user messages sent to an external AI backend, there is no evident malicious behavior or credential leakage in the supplied content. The footprint is proportionate to the stated purpose, though operational considerations (data privacy, runtime capabilities, and auditing of tool calls) should be addressed in implementation.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 02:53 AM
Package URL
pkg:socket/skills-sh/cloudflare%2Fskills%2Fbuilding-ai-agent-on-cloudflare%2F@fd6ddfa373c7cde6c48571877f2e2da1477df708