ses-troubleshoot
Audited by Socket on Feb 16, 2026
1 alert found:
Security[Skill Scanner] Credential file access detected All findings: [HIGH] data_exfiltration: Credential file access detected (DE002) [AITech 8.2.3] [HIGH] data_exfiltration: Credential file access detected (DE002) [AITech 8.2.3] Selected report demonstrates a clear, security-conscious approach to SES deliverability troubleshooting using widely adopted tools. While generally benign, ensure robust error handling, least-privilege access, and data privacy controls for local metadata reads and outputs. This baseline can be safely used as an improved, battle-tested diagnostic workflow. LLM verification: The skill itself (the documented text) is functionally benign and appropriate for SES deliverability troubleshooting. The primary security concern is supply-chain and data-exposure risk from instructing operators to run npx @wraps.dev/cli (remote code execution) and to read entire Wraps connection files without field restrictions. These behaviors can expose sensitive metadata or enable remote exfiltration if the third-party CLI is malicious or compromised. Recommend updating the skill to: (1) ex