llmfit-hardware-model-matcher

Warn

Audited by Socket on Mar 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Mostly consistent with a hardware-to-model recommendation skill. The main concern is install trust: a curl|sh installer from a custom domain with branding/ownership mismatch signals medium supply-chain risk, but there is no clear credential harvesting, exfiltration, or purpose-incompatible behavior. Overall classification: SUSPICIOUS due to installer provenance ambiguity, not malicious.

Confidence: 81%Severity: 56%
Audit Metadata
Analyzed At
Mar 17, 2026, 08:52 AM
Package URL
pkg:socket/skills-sh/Aradotso%2Ftrending-skills%2Fllmfit-hardware-model-matcher%2F@7e2573964947eac3d004fb25019a9ea0c71817ba