claude-agent-sdk
Fail
Audited by Socket on Feb 16, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The code/document fragment is largely benign and coherent with its stated purpose as a Claude Agent SDK overview. The main concern is the use of eval in sample code, which is explicitly cautioned against in production; developers should ensure such patterns are not deployed as-is. Aside from that, the installation paths, security best practices, and architecture patterns align with a legitimate SDK intended for building autonomous agents. No hardcoded secrets or covert data flows are evident in this fragment.
Confidence: 33%Severity: 40%
Audit Metadata