learn

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The code fragment describes a legitimate, high-level learning-guide generation skill that orchestrates web-based research and structured output generation. It does not include executable download/execute steps, credential handling, or covert data exfiltration. The footprint is coherent with its stated purpose, focusing on web-source gathering and knowledge-base generation. While the design implies external network activity (WebSearch/WebFetch) and disk writes for markdown/json outputs, this is expected for a knowledge-management tool and does not indicate malicious behavior. The pattern is suspicious only if misused in a production pipeline (e.g., uncontrolled web fetches, large-scale data harvesting); as provided, it aligns with a learning-guide generation capability.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 12:45 AM
Package URL
pkg:socket/skills-sh/avifenesh%2Fagentsys%2Flearn%2F@e2d2f070999c9a79ccbdd3944cd28d0c9bfff55a