workflow-security-audit
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose fits a security-audit workflow, but the skill's actual footprint is opaque and delegated to undocumented slash commands with unclear provenance. The main risk is transitive trust and hidden execution scope, not confirmed malware.
Confidence: 82%Severity: 68%
Audit Metadata