ida

Warn

Audited by Socket on Apr 17, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill is coherent as an IDA reverse-engineering guide and shows no credential theft or exfiltration, but it grants an AI agent high-risk offensive-capable binary analysis, patching, and debugging workflows. Official Hex-Rays package paths are mostly consistent, though the `ida-cli` path introduces a provenance mismatch that raises additional trust concerns.

Confidence: 87%Severity: 78%
Audit Metadata
Analyzed At
Apr 17, 2026, 02:12 PM
Package URL
pkg:socket/skills-sh/gmh5225%2Fida-cli%2Fida%2F@64ffbcc2c3bce960ccde9976ccbfde29068a117d