claude-agent-sdk

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The code/document fragment is largely benign and coherent with its stated purpose as a Claude Agent SDK overview. The main concern is the use of eval in sample code, which is explicitly cautioned against in production; developers should ensure such patterns are not deployed as-is. Aside from that, the installation paths, security best practices, and architecture patterns align with a legitimate SDK intended for building autonomous agents. No hardcoded secrets or covert data flows are evident in this fragment.

Confidence: 33%Severity: 40%
Audit Metadata
Analyzed At
Feb 16, 2026, 01:51 AM
Package URL
pkg:socket/skills-sh/sammcj%2Fagentic-coding%2Fclaude-agent-sdk%2F@e5ccefcdd373a7c9eae1a2c07c8dddccd225e601