sysadmin-toolbox
Warn
Audited by Socket on Mar 13, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the reference purpose mostly matches the listed capabilities, but the unverifiable refresh.sh updater materially raises supply-chain risk, and the skill equips an AI agent with offensive/security-tool guidance. No clear credential harvesting or exfiltration is shown from the provided content, so this is high-risk vulnerable behavior rather than confirmed malware.
Confidence: 82%Severity: 74%
Audit Metadata