skills-management

Fail

Audited by Socket on Mar 4, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The provided fragment is a well-structured, legitimate documentation and CLI reference for managing AI agent skills across multiple agents and scopes. No embedded malware, credentials, or exfiltration mechanisms are evident. Security risk is low for the artifact itself; standard caution applies to external ecosystem skill installations. Recommend maintaining strict trust controls and validation when installing ecosystem skills from external sources.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 4, 2026, 07:18 AM
Package URL
pkg:socket/skills-sh/CodeAlive-AI%2Fagents-reflection-skills%2Fskills-management%2F@c5cfab62557ab8619da94bf81f5edc63bdabff4f