web-monitor-bot

Warn

Audited by Socket on Feb 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Report 2 is the more comprehensive of the two, offering a plausible end-to-end architecture and risk signals. It appropriately highlights higher-risk capabilities (anti-detection, Cloudflare handling) and recommends mitigations (access controls, audit logs). While not inherently malicious, the combination of evasion tooling and local deployment increases security risk in real-world use. Recommend treating this as SUSPICIOUS unless strict safeguards are put in place, and ensure secure handling of credentials, encrypted storage for cookies, authenticated endpoints, and transparent user consent for monitoring activities.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 28, 2026, 10:37 PM
Package URL
pkg:socket/skills-sh/tianqiye%2Ftockstalk-bot%2Fweb-monitor-bot%2F@25ef79047b958148bc15b83c3343f2bd07b7f313