rental-prices
Warn
Audited by Socket on Mar 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The rental-query purpose is mostly coherent and credential scope is modest, but the skill asks the agent to install a third-party skill from an unverified repo and then execute local code with broad `uv run *` capability. External geocoding for nearby mode is proportionate, yet the transitive installation path and unpinned remote trust make this higher risk than a simple embedded-data lookup skill should be.
Confidence: 85%Severity: 66%
Audit Metadata