omni-content-explorer

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Omni Content Explorer skill is coherent with its stated purpose: it provides authenticated REST API interactions to discover, enumerate, filter, and download content artifacts. Data flows are straightforward (API key + base URL → REST calls → responses → user-facing results). No unauthorized downloads, no suspicious data exfiltration, and no credential-forwarding to unknown third-party services are evident. The primary security considerations are proper handling of API keys (least privilege, rotation, and secure storage), ensuring access controls for content visibility, and validating user-provided identifiers before making requests. Overall verdict: BENIGN with moderate operational risk due to credential handling and exposure of content metadata; no evidence of malicious behavior or inappropriate external data flows.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 11:22 PM
Package URL
pkg:socket/skills-sh/exploreomni%2Fomni-cursor-plugin%2Fomni-content-explorer%2F@987eae930c49d37e5a39bfd5766643820202c04b