email-send
Fail
Audited by Socket on Mar 1, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The file is a benign documentation snippet showing how to send email via SMTP using curl or Python. No obfuscated or overtly malicious code appears. Primary security concerns are operational: plaintext credentials in environment variables and especially passing credentials on the curl command line, and the high-impact nature of enabling outbound email (which can be abused for phishing or data exfiltration if misused by an automated agent). Recommend operational mitigations: avoid command-line credentials, use least-privilege credentials, require explicit user consent for sending messages, and audit activity.
Confidence: 98%
Audit Metadata