web-doc-resolver

Warn

Audited by Socket on Mar 27, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s stated purpose is coherent and there are no clear credential-harvesting or malicious install behaviors, but it combines untrusted external web/search content with Bash-capable agent permissions, creating meaningful indirect prompt-injection risk disproportionate to a pure documentation resolver.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Mar 27, 2026, 08:45 PM
Package URL
pkg:socket/skills-sh/d-o-hub%2Frust-self-learning-memory%2Fweb-doc-resolver%2F@ded2df648be4a2368e66c7b7bf0fcae95fc3d060