apple-containers

Warn

Audited by Socket on May 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's broad remote-dev workflow is coherent overall, but it combines sensitive credential use with multiple download-and-execute steps, including an unpinned personal dotfiles installer and SSH agent exposure inside the container. The main concern is supply-chain and credential-forwarding risk rather than confirmed malware.

Confidence: 90%Severity: 84%
Audit Metadata
Analyzed At
May 1, 2026, 01:00 PM
Package URL
pkg:socket/skills-sh/kylelundstedt%2Fdotfiles%2Fapple-containers%2F@16ec7ec284d0d4afdc5470ce55258f5851e60bff