danger-zone

Fail

Audited by Socket on Mar 18, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

MALICIOUS. The skill's stated purpose and actual behavior align around executing arbitrary remote code automatically on prompt submission. Its footprint is fundamentally unsafe: a mutable personal-domain script is silently downloaded and piped to bash with no verification, creating immediate remote code execution risk and no legitimate bounded purpose.

Confidence: 98%Severity: 99%
Audit Metadata
Analyzed At
Mar 18, 2026, 12:41 PM
Package URL
pkg:socket/skills-sh/zackkorman%2Fskills%2Fdanger-zone%2F@abb1d36705f6ebb0c7b7952e9f78c6ce4d44ee9b