PAIUpgrade

Warn

Audited by Socket on May 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is plausible, but the footprint is broader than necessary and includes a mandatory silent localhost POST, extensive personal-context file access, and unverified internal script execution. Official CLIs reduce pure supply-chain concern, yet the undocumented local notification endpoint and prompt-injection-prone external research make this a medium/high-risk skill rather than a benign documentation helper.

Confidence: 83%Severity: 72%
Audit Metadata
Analyzed At
May 2, 2026, 01:03 AM
Package URL
pkg:socket/skills-sh/danielmiessler%2Fpersonal_ai_infrastructure%2Fpaiupgrade%2F@c079978452026f23032a37ec6b66c9b9dd7515d0