wolf-howl

Warn

Audited by Socket on Mar 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core analytics behavior matches the stated purpose, but the footprint includes autonomous scheduled execution, outbound Telegram messaging, and reliance on a third-party CLI that can receive tokens and broker MCP connections. This is not confirmed malware, yet it presents meaningful security risk for a live trading environment due to credential-forwarding and automation trust boundaries.

Confidence: 86%Severity: 74%
Audit Metadata
Analyzed At
Mar 19, 2026, 11:45 PM
Package URL
pkg:socket/skills-sh/Senpi-ai%2Fsenpi-skills%2Fwolf-howl%2F@8d7675447aa0749bbcfd5de3158fafc011dbda9e