hyperstack-consume

Warn

Audited by Socket on Feb 26, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

This skill is coherent with its stated purpose (reading and streaming Hyperstack data). I found no embedded malware, download-and-execute constructs, hardcoded secrets, or instructions to harvest local credentials. The main security considerations are normal for a streaming SDK: (1) do not connect to untrusted wss:// URLs without verifying the endpoint, (2) be cautious with console logging of entity data that may contain sensitive fields, and (3) be aware of supply-chain risk when installing npm/cargo packages. Overall risk is moderate but expected for a networked SDK; no malicious behavior is evident in the provided content.

Confidence: 75%Severity: 50%
Audit Metadata
Analyzed At
Feb 26, 2026, 02:18 AM
Package URL
pkg:socket/skills-sh/usehyperstack%2Fskills%2Fhyperstack-consume%2F@83e0dd2bbbfc57741b31a37c76fcf2743358a88f