phoenix-observability
Fail
Audited by Socket on Feb 15, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
This SKILL.md-like documentation describes a self-hosted observability/evaluation platform and its capabilities. The capabilities, required environment variables, installs, and data flows are coherent with the stated purpose. I found no evidence of malicious code or deceptive data flows in this fragment. The primary risks are normal operational/security concerns for observability platforms: improper exposure of PII, running without authentication, and trusting upstream packages/images without verifying publisher integrity. Treat as benign in intent but operationally sensitive; follow deployment best practices.
Confidence: 90%Severity: 20%
Audit Metadata