compound

Pass

Audited by Socket on Feb 25, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 25, 2026, 02:38 AM
Package URL
pkg:socket/skills-sh/team-attention%2Fworkshop-upstage%2Fcompound%2F@88e35631a434ac884d35370a6a3b7c5e1fd316bd