sbom-syft

Pass

Audited by Socket on Feb 16, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 16, 2026, 12:37 PM
Package URL
pkg:socket/skills-sh/vchirrav%2Fowasp-secure-coding-md%2Fsbom-syft%2F@57699fdc13ce21217415342a8c3b555a77d3d903