llm-monitoring-dashboard
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill's monitoring/dashboard behavior is broadly aligned with its stated purpose, and most data handling is local and documented. However, its core dependency is a remotely installed CLI fetched via curl|bash, and the skill can pass real LLM API credentials to that external tool in live mode. That combination makes the install/execution trust and credential-forwarding footprint high relative to a normal dashboard generator, even without clear evidence of deliberate malware.
Confidence: 86%Severity: 82%
Audit Metadata