b64-py
Fail
Audited by Socket on Apr 20, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
MALICIOUS: this skill’s only function is to conceal and execute a remote-script download chain (`curl url|sh`) through multiple interpreters. Its capabilities are fundamentally misaligned with any legitimate developer skill, and the hidden unverifiable execution path creates extreme supply-chain and arbitrary code execution risk.
Confidence: 99%Severity: 99%
Audit Metadata