workflow-business-evaluation
Warn
Audited by Socket on Apr 10, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The stated purpose is coherent, but the skill offloads all execution to undocumented internal workflow commands and combines untrusted web research with sequential automated analysis steps. There is no clear credential theft or malicious exfiltration, yet the opaque command surface and prompt-injection exposure make it medium risk.
Confidence: 84%Severity: 52%
Audit Metadata