prose

Fail

Audited by Socket on Feb 25, 2026

2 alerts found:

MalwareObfuscated File
MalwareHIGH
SKILL.md

The OpenProse skill is coherently aligned with its goal of VM-like prose execution and multi-agent orchestration, but it introduces meaningful security risks due to remote code fetch/execute flows and credential handling that can appear in logs. To reduce risk, enforce strict provenance controls, avoid logging sensitive credentials, sandbox remote program execution, and require explicit user approval for remote fetch/run operations.

Confidence: 95%Severity: 90%
Obfuscated FileHIGH
prose.md

The file is a detailed VM/runtime specification that intentionally enables execution of fetched programs and spawning of subagents with access to local and persistent state. The specification text itself contains no obfuscated code or built-in malware, but its described semantics (remote program execution, direct subagent access to local files and agent memory, recommended use of exec/curl) create a moderate security risk if implemented without strict sandboxing, provenance verification, and network/filesystem access controls. Treat runs importing or executing remote .prose programs as untrusted by default, require signing/validation and capability restrictions, and limit persistent agent paths to reduce risk of data leakage and RCE.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 25, 2026, 05:53 AM
Package URL
pkg:socket/skills-sh/steipete%2Fclawdis%2Fprose%2F@fa8bad315ca6ed540e5feaebae624ea5bfa97a24