chroma

Pass

Audited by Socket on Apr 4, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Apr 4, 2026, 05:51 PM
Package URL
pkg:socket/skills-sh/NousResearch%2Fhermes-agent%2Fchroma%2F@b716059b38c6a9144ae6e7e691617108cc4d39dd