web3-security-analysis

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent Web3 security tooling suite (GoPlus token risk, honeypot detection, Tenderly simulations, Flashbots MEV protection) with environment-based credential usage. The data flows are logically consistent with the stated purpose, and install sources are reputable public APIs rather than unverifiable binaries. Credentials are properly sourced from environment variables, though secure management practices must be enforced to prevent leakage. Overall, the footprint is benign to mildly suspicious due to multi-service data flow and handling of sensitive keys; not malicious, but it warrants careful credential management and clear user consent for data sharing.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 07:35 PM
Package URL
pkg:socket/skills-sh/XSpoonAi%2Fspoon-awesome-skill%2Fweb3-security-analysis%2F@44449ad2d8039fa53e36e99c1088d1656a8fc711