gifgrep
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is narrow and benign, but the skill primarily instructs the agent to install another unpinned skill whose specific provenance is not verified. The official ClawHub install path reduces maliciousness concerns, yet the transitive trust chain and weak source clarity make this medium risk.
Confidence: 85%Severity: 64%
Audit Metadata