meme-pumper

Fail

Audited by Socket on Feb 15, 2026

2 alerts found:

Obfuscated Filex2
Obfuscated FileHIGH
references/viral-content-frameworks.md

This document is a high-risk marketing playbook for virality in crypto contexts. It contains prescriptive social-engineering techniques and coordination tactics that can be used ethically for community growth but are readily repurposable for deceptive campaigns, misinformation, and pump-and-dump schemes. There is no executable malware or obfuscation in the file itself, but the guidance increases socio-technical attack surface and potential for significant financial and reputational harm when combined with falsified on-chain evidence or coordinated actors. Recommend treating the artifact as ethically sensitive: restrict use, add clear compliance and verification requirements, and monitor downstream content for abusive patterns.

Confidence: 98%
Obfuscated FileHIGH
SKILL.md

The package is not typical malware (no evidence of code-level backdoors, data exfiltration, or obfuscation), but it explicitly documents tactics and operational playbooks for coordinated inauthentic behavior, engagement farming, raid coordination, and evasion of platform enforcement. It also links social-engineering actions to market/on-chain signals, creating a credible mechanism for market-influencing campaigns. Operationally and ethically, this module should be treated as high-risk: avoid use in environments that must comply with platform terms of service, anti-manipulation rules, or securities laws. If accepted into a codebase or repository, flag for removal or heavy governance review and limit access to prevent misuse.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 15, 2026, 09:14 PM
Package URL
pkg:socket/skills-sh/dreamineering%2Fmeme-times%2Fmeme-pumper%2F@ffdd5746a94680fe5f6fe51cbad765ef1f60e00a