test-ui

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core QA purpose is legitimate and mostly aligned with the described capabilities, but the skill handles authentication unsafely by asking users to manually extract raw cookies/tokens and pass them to scripts via CLI. It also expands trust by activating other skills and processing untrusted web content with write-capable tooling. No direct exfiltration endpoint or clearly malicious behavior is shown in this excerpt, so this is medium risk rather than confirmed malware.

Confidence: 84%Severity: 63%
Audit Metadata
Analyzed At
Mar 21, 2026, 03:52 AM
Package URL
pkg:socket/skills-sh/duc01226%2Feasyplatform%2Ftest-ui%2F@50abce3f3585198f2eb41291fcf8964efc40a525