white-label

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The code and automation scripts are consistent with legitimate white-labeling and hardening tasks for WordPress. There are no clear signs of malware or covert exfiltration in the inspected files. However, the scripts perform powerful, high-impact administrative changes without validation, dry-run, or backup safeguards — which creates operational risk (site breakage, admin lockout, or misuse if an attacker can invoke them). Treat this tooling as safe when run by a trusted administrator in a controlled environment, but potentially dangerous if run by untrusted agents or without backups and testing.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 16, 2026, 01:39 PM
Package URL
pkg:socket/skills-sh/crazyswami%2Fwordpress-dev-skills%2Fwhite-label%2F@8b5f3953f0e896b949e5740c83a296500c069b96