fabro-workflow-factory

Warn

Audited by Socket on Mar 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s broad capabilities mostly match its stated purpose as an agent workflow orchestrator, but the install path is a major concern: it relies on remote download-execute patterns and remote content piped into agents, and the provided material does not verify that fabro.sh and the referenced GitHub org are officially tied to the publisher. Credentials and external data flows are largely proportionate to the claimed tool, so this is not confirmed malware, but it carries high supply-chain and agent-execution risk until installer provenance is independently verified.

Confidence: 82%Severity: 81%
Audit Metadata
Analyzed At
Mar 19, 2026, 07:52 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Ffabro-workflow-factory%2F@dbb090fc4d25e93c42d03222f24dc78c69125538