generate-mdl

Fail

Audited by Snyk on Mar 20, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.80). While the GitHub-hosted JSON and script and localhost UI are not inherently malicious, the skill explicitly directs fetching and piping a raw install.sh from raw.githubusercontent.com into bash (curl | bash), which is a high-risk pattern for distributing malware and should be treated with caution.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Mar 20, 2026, 08:56 AM
Issues
1