npm-publish

Pass

Audited by Socket on Mar 3, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Mar 3, 2026, 09:14 PM
Package URL
pkg:socket/skills-sh/toilahuongg%2FShopify-Agents-Kit%2Fnpm-publish%2F@5d8b8d68c50332d72cf9a1bf60bd07fdd5fd384d