skill-installer

Fail

Audited by Socket on Mar 3, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The package implements a legitimate skill installer but carries moderate-to-high supply-chain risk because it fetches and writes remote code into the agent's skills directory and supports arbitrary GitHub sources and authenticated access. Primary risks are transitive code execution (installing unvetted or malicious skills), credential exposure when using tokens or system git credentials, and potential overwriting of trusted system skills. Treat this component as security-sensitive: enforce strict source allowlisting (prefer curated list), require explicit user/human approval for installs from non-curated sources, add integrity verification (pinning/signatures), restrict credential usage and avoid automatic forwarding to subprocesses, and disallow or heavily guard overwriting of .system skills.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 3, 2026, 04:22 PM
Package URL
pkg:socket/skills-sh/EricOo0%2Fstock-trading-platform%2Fskill-installer%2F@6ac7530a84f0df822babb1be6e8fcfd5982da1db