Xlsx

Warn

Audited by Socket on Mar 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The spreadsheet functionality itself is coherent, but the skill is over-scoped by mandating access to unrelated personal PAI context and by requiring execution of an unverifiable local recalc.py script with automatic LibreOffice macro setup. No confirmed malicious exfiltration is shown, but the install/execution trust and scope are not proportionate to a normal Excel skill.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
Mar 16, 2026, 03:46 AM
Package URL
pkg:socket/skills-sh/danielmiessler%2FPersonal_AI_Infrastructure%2Fxlsx%2F@f582ae93fc7baaa79a0335210f0b80e686066432