find-skills
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This skill is not overtly malicious, and its CLI install path appears official and purpose-aligned. The main risk is inherent transitive trust: it exists to discover and install third-party skills that inherit agent permissions, so overall classification is suspicious/high-risk from a security standpoint despite low evidence of malicious intent in this skill itself.
Confidence: 89%Severity: 74%
Audit Metadata