technical-blog-writing

Fail

Audited by Socket on Mar 25, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS: mostly coherent for technical blog creation, but it expands into remote CLI execution, public posting, and transitive skill installation. The installer appears same-org and documented, so supply-chain risk is moderate rather than severe; the main concerns are autonomous posting and inherited trust from installing other skills.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Mar 25, 2026, 01:02 AM
Package URL
pkg:socket/skills-sh/inference-sh-3%2Fskills%2Ftechnical-blog-writing%2F@702ff0637892a4cea844402fb70a287a0c411741