sentry-android-sdk

Fail

Audited by Socket on Mar 4, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

BENIGN: The fragment serves as a structured guidance document for integrating the Sentry Android SDK. It describes standard, widely-used setup flows (Gradle plugin, manual init) and uses conventional, widely-trusted sources (public registries for npm/Gradle plugins). No hardcoded secrets, no remote command execution, and no covert data exfiltration are evident. Data flows center on legitimate configuration inputs (DSN, org/project, environment) and standard telemetry initialization in the app. Security risk is present due to potential exposure of tokens during setup, but this is a known and manageable risk when using CI/CD secrets; otherwise, the footprint is consistent with the stated purpose of SDK setup guidance.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 4, 2026, 05:42 AM
Package URL
pkg:socket/skills-sh/getsentry%2Fsentry-for-ai%2Fsentry-android-sdk%2F@b1f8fff2a7685b39124d9e1cf5cf4ae06642252e