skill-installer

Fail

Audited by Socket on Mar 1, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill-installer performs legitimate, necessary actions to install skills from GitHub but embodies moderate to high supply-chain risk. Key risks: installing arbitrary (uncurated) repos into a runtime, use and potential forwarding of credentials (GITHUB_TOKEN/GH_TOKEN and system git credentials), fallback to host git tooling, and the ability to overwrite system-managed skills. I do not see evidence of explicit malicious code in this description, but the installer significantly raises the attack surface for downstream code execution. Operational mitigations: require curator review before installing untrusted skills, avoid passing long-lived tokens, prefer pinned commits or signed artifacts, run installs in isolated environments with least privilege, and restrict ability to overwrite .system skills.

Confidence: 98%Severity: 90%
Audit Metadata
Analyzed At
Mar 1, 2026, 03:21 PM
Package URL
pkg:socket/skills-sh/cyb3rdudu%2Fdotfiles%2Fskill-installer%2F@97d0788328e7050b3552d892b37508a9e16ef26a