phoenix-observability

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

This SKILL.md-like documentation describes a self-hosted observability/evaluation platform and its capabilities. The capabilities, required environment variables, installs, and data flows are coherent with the stated purpose. I found no evidence of malicious code or deceptive data flows in this fragment. The primary risks are normal operational/security concerns for observability platforms: improper exposure of PII, running without authentication, and trusting upstream packages/images without verifying publisher integrity. Treat as benign in intent but operationally sensitive; follow deployment best practices.

Confidence: 90%Severity: 20%
Audit Metadata
Analyzed At
Feb 15, 2026, 08:04 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Fphoenix-observability%2F@a6bb298c1c748db62cf1beb6ec7ed8c13892bd8d