dev-debug

Warn

Audited by Socket on Mar 15, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s core behavior matches its stated debugging purpose and shows no external exfiltration or installer abuse, but it grants broad autonomous execution through subagents, lets one agent run shell commands supplied by another, processes untrusted repo/log content with write+exec capability, and chains into another skill. This is a coherent but medium-high risk debugging skill rather than confirmed malware.

Confidence: 88%Severity: 66%
Audit Metadata
Analyzed At
Mar 15, 2026, 05:04 AM
Package URL
pkg:socket/skills-sh/edwinhu%2Fworkflows%2Fdev-debug%2F@cae4dba610939ad06f0f7b7eda344e8854bc83ab