tooluniverse

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

Overall, the SkillUniverse fragment is coherently aligned with its stated purpose of scientific tool discovery, execution, and workflow composition. There are no evident malicious patterns, credential harvesting, or suspicious data flows within the provided text. The only notable issue is a minor installation command typo that could affect onboarding but not security. In a live environment, ensure proper access control to databases, secure handling of API keys if any, and validation of tool parameters to prevent abuse.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 02:08 PM
Package URL
pkg:socket/skills-sh/ynulihao%2Fagentskillos%2Ftooluniverse%2F@80d956f2051d4aa45e263a2fa6c94fce782df993