agent-messaging

Fail

Audited by Socket on Mar 18, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS: The capability mostly matches the stated purpose, but the install model requires executing an unreviewed repo script and the external messaging/provider data flows are underspecified. This looks more like a plausible but higher-trust messaging skill than confirmed malware.

Confidence: 80%Severity: 56%
Audit Metadata
Analyzed At
Mar 18, 2026, 05:00 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fagent-messaging%2F@addd52767bea8ed3de99d9021d4ce35426e38e30