ses-troubleshoot

Warn

Audited by Socket on Feb 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

[Skill Scanner] Credential file access detected All findings: [HIGH] data_exfiltration: Credential file access detected (DE002) [AITech 8.2.3] [HIGH] data_exfiltration: Credential file access detected (DE002) [AITech 8.2.3] Selected report demonstrates a clear, security-conscious approach to SES deliverability troubleshooting using widely adopted tools. While generally benign, ensure robust error handling, least-privilege access, and data privacy controls for local metadata reads and outputs. This baseline can be safely used as an improved, battle-tested diagnostic workflow. LLM verification: The skill itself (the documented text) is functionally benign and appropriate for SES deliverability troubleshooting. The primary security concern is supply-chain and data-exposure risk from instructing operators to run npx @wraps.dev/cli (remote code execution) and to read entire Wraps connection files without field restrictions. These behaviors can expose sensitive metadata or enable remote exfiltration if the third-party CLI is malicious or compromised. Recommend updating the skill to: (1) ex

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 16, 2026, 12:34 PM
Package URL
pkg:socket/skills-sh/wraps-team%2Fskills%2Fses-troubleshoot%2F@7b7ec9e0d7f39baf7079c85cfc6267f3abebcb03