wavybaby

Warn

Audited by Socket on Feb 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

[Skill Scanner] Detected role reassignment attempt The descriptor conceptually aims to enhance Claude Code with CoVe and dynamic skill discovery, but the proposed auto-installation of unvetted skills and MCP servers, plus automatic config changes, creates substantial supply-chain and runtime risks. Without explicit consent, provenance verification, and safety gates, this design should be treated as suspicious. Safer alternatives include opt-in behavior, sandboxed skill installation, and strict integrity checks. LLM verification: The fragment presents an ambitious but insecure pattern: unconditional external skill discovery/installation and MCP server deployment, with only high-level CoVe concepts and no concrete safeguards. This configuration could enable supply-chain compromise, unauthorized infrastructure changes, or data exposure. It should be treated as high-risk and require explicit user consent, strong provenance controls, and bounded automation before any production use.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 15, 2026, 09:02 PM
Package URL
pkg:socket/skills-sh/aaarnv%2Fclaude-skills%2Fwavybaby%2F@a7c26672128c5581327eddb711aaba7d2c9dc3a4