didit-biometric-age-estimation
Fail
Audited by Socket on Mar 11, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The Didit Age Estimation API integration is generally coherent with its stated purpose (age estimation with liveness and adaptive verification). Data flows to an official external service are expected for this capability. The footprint is proportionate, with credential handling limited to an API key and typical HTTPS endpoints. Security risks are present primarily around handling sensitive biometric data and API keys, but there are no evident malicious behaviors or unsecured supply chains. Overall, the skill is BENIGN with notable privacy and secret-management considerations that should be governed by proper implementation practices.
Confidence: 98%Severity: 55%
Audit Metadata