ollama-search

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Ollama Search skill presents a coherent, well-scoped tool for cloud-based web search and content retrieval. Its data flows and credential handling are consistent with a legitimate developer tool: API keys are supplied via environment variables, and the scripts perform read-only API calls to official endpoints. No unverifiable binaries, credential harvesting, or autonomous actions are evident. The security risk is low to moderate (benign-to-suspicious), primarily driven by standard network data flows and the potential for user-query data exposure to a cloud service. Overall, the footprint is proportionate to the stated purpose, with no clear indicators of malicious behavior.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 10:07 AM
Package URL
pkg:socket/skills-sh/nordz0r%2Fskills%2Follama-search%2F@8134cb9ee9819064cf36e80ba907b96fe5e204f0