eve-local-dev-loop

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The local Docker Compose portion is coherent and benign, but the skill’s staging handoff depends on an Eve CLI that was not independently verified as an official, auditable distribution. Because the skill also forwards secrets to that CLI, it carries high security risk under the required scoring rules, though there is not enough evidence to call it confirmed malware.

Confidence: 84%Severity: 82%
Audit Metadata
Analyzed At
Mar 13, 2026, 04:52 PM
Package URL
pkg:socket/skills-sh/incept5%2Feve-skillpacks%2Feve-local-dev-loop%2F@63d623ba7012c93a49840c1d77d03c491ba2a57d