moai-baas-auth0-ext

Fail

Audited by Socket on Mar 2, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

No explicit malware or obfuscated backdoor is present in the provided code snippets. Primary risks are operational and supply-chain: credential exposure (examples encourage patterns that use management credentials), autonomy/privilege abuse (auto-load combined with broad file/network tool permissions), and potential high-impact tenant changes if executed with real credentials. Mitigations: require explicit user approval for actions, remove or minimize auto-load/autonomous execution, use short-lived least-privileged credentials, lock down allowed-tools, and audit all management API calls.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 2, 2026, 05:16 PM
Package URL
pkg:socket/skills-sh/jg-chalk-io%2FNora-LiveKit%2Fmoai-baas-auth0-ext%2F@74095bb55c15e2e4bc02f4861999f1e2117a806f