monet

Warn

Audited by Socket on Apr 3, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's main behavior fits its stated purpose, and there is no clear credential harvesting or malicious exfiltration in the text. However, trust is weakened by the undocumented localhost server, mismatch with Monet's public hosted MCP setup, unclear publisher relationship, and unpinned remote code/dependency intake into the user's project.

Confidence: 82%Severity: 56%
AnomalyLOW
scripts/pull.py

This module is a security-sensitive code-injection/supply-chain helper: it fetches untrusted component source text from a (plain HTTP, no-auth) local registry and writes it verbatim into the project’s .tsx source tree with minimal content modification. It also allows potentially arbitrary file placement/overwrite through --output (especially when absolute). While there is no direct evidence of malware such as exfiltration or shell execution in this snippet, the design enables persistence of malicious application code if the local registry response or endpoint is compromised.

Confidence: 63%Severity: 68%
Audit Metadata
Analyzed At
Apr 3, 2026, 08:06 AM
Package URL
pkg:socket/skills-sh/greatsumini%2Fmonet-nextjs-template%2Fmonet%2F@0374e65ad59a7de435988604620bddf52cf67825