agent-bridge

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is a tooling bridge intended to adapt and migrate plugin content across multiple AI agent runtimes. Its footprint—local Python-based bridge scripts, local directory generation, and environment-specific file mappings—appears coherent with its stated purpose. There is no indication of network exfiltration, credential handling, or remote code execution in the provided description. However, the presence of transitive bridging capabilities and multiple environment targets means caution is warranted to ensure only trusted plugins are bridged and that input validation is robust to avoid path/command injection in edge cases. Overall, the risk is low to moderate and aligns with a developer tooling usage scenario.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 08:47 AM
Package URL
pkg:socket/skills-sh/richfrem%2Fagent-plugins-skills%2Fagent-bridge%2F@35707e7dc39c0a0f7c4ce42052ab0b1998730e49