omni-query

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

Overall, the omni-query skill is conceptually aligned with its stated purpose: it issues authenticated REST calls to Omni's API, constructs queries, handles results, and supports multi-step analysis. The footprint is proportionate to its goal, with credential handling via environment variables and standard HTTP-based data retrieval. No download/install chains or third-party binaries are involved. Minor security considerations include ensuring credentials are not logged or leaked and that large binary results are decoded and stored securely. Given these, the risk is primarily moderate due to credential exposure potential in logs; no evident data exfiltration or misuse patterns are present.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 12:33 AM
Package URL
pkg:socket/skills-sh/exploreomni%2Fomni-cursor-plugin%2Fomni-query%2F@0a27ce64690caf8d6f373e99bf83cc3b3919d360