helpmetest-discover

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s behavior mostly aligns with its QA-discovery purpose, but it depends on a vendor MCP/service, forwards API-token-authenticated data to HelpMeTest, processes untrusted website content with action-capable tools, and includes credential-sensitive artifact patterns. The main concern is medium security risk from external service trust, wildcard tool scope, and exploratory browsing with write-capable outputs, not confirmed malicious intent.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Mar 21, 2026, 11:52 PM
Package URL
pkg:socket/skills-sh/help-me-test%2Fskills%2Fhelpmetest-discover%2F@d8b8f5f3a4714ea7d2e5dd8e9d82a6f371ddb3c2