wiki-init

Warn

Audited by Socket on May 5, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS due to medium supply-chain risk, not clear malware. The skill’s capabilities mostly match its stated wiki/QMD setup purpose and it uses explicit approval before writes, but its managed `--write` flow clones and installs an external tool from a personal GitHub repo instead of the upstream registry install path, which makes the execution trust story weaker than necessary.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
May 5, 2026, 07:00 PM
Package URL
pkg:socket/skills-sh/djalmajr%2Fskills%2Fwiki-init%2F@8708c46f13ba0100bd989d1ca83e4e12e7bcd0d3