proposal-automation

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is not overtly malicious and shows no hostile installer chain or credential harvesting, but its footprint is unusually expansive: it combines external research, autonomous software build, and creation of commercially sensitive deliverables. Main risk is broad autonomous execution and indirect prompt injection from untrusted research inputs, not confirmed malware.

Confidence: 83%Severity: 58%
Audit Metadata
Analyzed At
Mar 18, 2026, 06:16 AM
Package URL
pkg:socket/skills-sh/aviskaar%2Fopen-org%2Fproposal-automation%2F@a838f8e862598263bb27199c5d46461f8db9471b