auto-skill-creation

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill concept is coherent with automating skill creation by leveraging external AI agents and generating skill structures. however, it introduces data-flow risks by sending prompts/content to external agents without explicit user consent or data-handling safeguards. There is no evidence of credential access or malicious activity, but the external agent data exchange is the main risk area. Mitigate by clarifying data handling policy, enabling opt-in for external processing, and providing local/dummy mode for offline generation.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 02:15 AM
Package URL
pkg:socket/skills-sh/cklxx%2Felephant.ai%2Fauto-skill-creation%2F@cb1adf6376ad1e50a78f4f688aef32bcd424be89