x402

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The x402 skill describes a coherent, multi-network payment protocol with clearly defined roles (resource server, client, facilitator) and standard integration points via official SDKs and URLs. Data flows center on payment headers and on-chain settlements, without credential harvesting or suppressed user interaction. The footprint is proportionate to its stated purpose as a protocol/toolkit for paid APIs and paywalls, and it relies on verifiable, official dependencies and endpoints. Overall, the skill is BENIGN with LOW to MEDIUM risk primarily associated with network exposure to the official facilitator and multi-network integration complexity, but there are no evident credential exfiltration or supply-chain red flags.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 05:42 AM
Package URL
pkg:socket/skills-sh/tenequm%2Fclaude-plugins%2Fx402%2F@6a47a2b4645c83a4fcc943814d5bc9fb3e0207d2