verl-async-dapo

Warn

Audited by Socket on Apr 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

总体偏可疑但非恶意:用途与训练/监控场景基本一致,未见明显恶意下载执行链或无关权限请求;主要风险来自向未公开可验证的 SwanLab Host 转发 API Key/监控数据,以及对 swanlab-setup skill 的转移信任。适合归类为 SUSPICIOUS 而非 MALICIOUS。

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
Apr 24, 2026, 07:22 AM
Package URL
pkg:socket/skills-sh/ascend%2Fagent-skills%2Fverl-async-dapo%2F@375ca467ce7df01fc8bdb261e0cfaf0f3cdb65cb