__SKILL_NAME__
Warn
Audited by Socket on Mar 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the visible footprint is not overtly malicious and the execution path uses a legitimate npm tool, but the skill is too underspecified and claims automatic access to Confidential and Personal knowledge that is not proportionate to its placeholder purpose. Main risks are vague purpose, broad secret scope, and unpinned `npx` execution rather than confirmed malware or exfiltration.
Confidence: 81%Severity: 56%
Audit Metadata