Socket incident
Packages are being incorrectly flagged as malware
Socket experienced a notice incident on January 8, 2026 affecting Socket API and Socket for GitHub and 1 more component, lasting 2h 41m. The incident has been resolved; the full update timeline is below.
Affected components
Socket APISocket for GitHubSocket DashboardPackage Pages
Update timeline
- identified Jan 08, 2026, 08:59 PM UTC
We have observed that a large number packages have been incorrectly flagged as malware, with incorrect threat descriptions. We are working on a fix.
- resolved Jan 08, 2026, 11:41 PM UTC
This incident has been resolved.