hugging-face-object-detection-trainer

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill exhibits coherent purpose-capability alignment: it enables managed object-detection model training on Hugging Face Jobs with dataset validation, preprocessing, and Hub persistence. The install/execution sources are official HF domains and well-known Python tooling, with credential handling confined to HF tokens via job secrets. Permissions and data flows are proportionate to training workflows; no covert data exfiltration or dubious binaries are evident. Overall, the footprint is Benign with moderate risk due to credential handling and cloud-based data flows; treat as Suspicious-only-in-context if secrets are mishandled or if token exposure occurs in practice.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 12:21 PM
Package URL
pkg:socket/skills-sh/huggingface%2Fskills%2Fhugging-face-object-detection-trainer%2F@6c5e181c8070749b8f8712b1fb9198cf7e026ce8