PAIUpgrade
Warn
Audited by Socket on May 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core purpose is plausible, but the footprint is broader than necessary and includes a mandatory silent localhost POST, extensive personal-context file access, and unverified internal script execution. Official CLIs reduce pure supply-chain concern, yet the undocumented local notification endpoint and prompt-injection-prone external research make this a medium/high-risk skill rather than a benign documentation helper.
Confidence: 83%Severity: 72%
Audit Metadata