use-instavm

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's described capabilities align with its purpose of managing InstaVM resources (sessions, VMs, snapshots, shares, volumes) via SDK/CLI/HTTP interfaces, with appropriate preflight and routing documentation. The footprint is proportionate to the stated task, centering on authenticated API interactions and controlled resource mutations. Security concerns mainly involve careful handling of API keys and SSH keys, secure data flows, and ensuring explicit confirmations for destructive or high-impact actions. No obvious malicious data exfiltration or unauthorized third-party tooling is evident from the description. Overall, the skill is Benign with Medium risk due to credential handling and data-flow exposure that must be managed properly.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 10:54 AM
Package URL
pkg:socket/skills-sh/instavm%2Fskills%2Fuse-instavm%2F@5bb6f286223410fdbab5ea3a627d0f2625bfd43e