autoresearch

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

BENIGN in purpose alignment but HIGH-IMPACT operationally: it is a coherent local ML automation skill, not a credential harvester or exfiltration tool. Main risk comes from indefinite autonomous code modification/execution and destructive git actions; supply-chain risk is limited to official but unpinned `uv` usage.

Confidence: 89%Severity: 68%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:16 AM
Package URL
pkg:socket/skills-sh/aviskaar%2Fopen-org%2Fautoresearch%2F@35ae4f8bdb9522022c484c4dc38d6f2889018f53