agent-tools

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is broadly coherent with an inference platform, and the installer appears to be officially distributed from the same domain family, so there is no strong evidence of malware or credential harvesting. However, it combines broad cloud execution, local file uploads, transitive skill installation, and autonomous X/Twitter actions, making its operational scope and downstream trust surface meaningfully risky.

Confidence: 88%Severity: 67%
Audit Metadata
Analyzed At
Apr 9, 2026, 08:03 AM
Package URL
pkg:socket/skills-sh/tool-belt%2Fskills%2Fagent-tools%2F@07fff5cd7b40cd49a49c5d86527de42fae02b476