huggingface-local-models

Pass

Audited by Socket on Apr 24, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Apr 24, 2026, 12:24 AM
Package URL
pkg:socket/skills-sh/huggingface%2Fskills%2Fhuggingface-local-models%2F@89782df299cf7514502688a9f5f174a875e9927d