web-fetch

Pass

Audited by Socket on Feb 15, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 15, 2026, 09:47 PM
Package URL
pkg:socket/skills-sh/jst-well-dan%2Fskill-box%2Fweb-fetch%2F@387dca22c9fdd2cce83d94dc3cc67b0e41c90d91