websocket-engineer

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is coherently scoped to its stated purpose of building and operating real-time WebSocket infrastructure with scalable architecture, proper session handling, and presence management. There are no explicit dangerous download/execution patterns, no unsolicited credential harvesting, and data flows align with typical WebSocket-based architectures (auth, rooms, Redis pub/sub, health monitoring). The footprint remains proportionate: no broad file access, no aggressive credential exposure, and no autonomous real-world actions. Overall, the skill appears BENIGN with MEDIUM risk considerations around token handling in logs and metrics, and a small potential for credential exposure if logs are not properly redacted.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 08:32 AM
Package URL
pkg:socket/skills-sh/jeffallan%2Fclaude-skills%2Fwebsocket-engineer%2F@7818430ad0c9d1a3a3026099d6c9b104f83d0c82