pi-share

Fail

Audited by Socket on Mar 2, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The pi-share session loader is coherently designed to fetch, decode, and present session transcripts from gist-based sources. While there is no explicit malicious behavior, significant privacy and data-exposure risks arise from handling potentially sensitive human/system prompts and from external analysis dependencies. Recommend implementing strict access controls, output redaction where appropriate, data-minimization, and clear user consent for exporting human summaries. Overall risk is moderate due to data handling and external dependency surfaces.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 2, 2026, 10:29 PM
Package URL
pkg:socket/skills-sh/mitsuhiko%2Fagent-commands%2Fpi-share%2F@3b78beec7e3bb3a84564fc0fec3523eaf3678074