drop-in-ui

Pass

Audited by Socket on Apr 21, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Apr 21, 2026, 06:51 PM
Package URL
pkg:socket/skills-sh/hit-pay%2Fclaude-code-plugin%2Fdrop-in-ui%2F@9b10b0ae0761e030c0a46aaa415cb22777835b21