context-discovery
Warn
Audited by Socket on Mar 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The stated purpose is benign and mostly aligned with local context discovery, but the execution trust story is incomplete. The skill asks the agent to run undocumented slash commands and potentially download/install context without a verifiable source, making the supply-chain footprint disproportionate to the sparse install details even though no direct credential theft or exfiltration is shown.
Confidence: 82%Severity: 58%
Audit Metadata