design-describe
Warn
Audited by Socket on Mar 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core design-description behavior is benign, but the mandatory use of a third-party skill introduces transitive trust risk disproportionate to a simple screenshot-description task. No direct credential theft, exfiltration, or installer abuse is present in this file, so this looks more like a medium-risk vulnerable skill than malware.
Confidence: 84%Severity: 56%
Audit Metadata