book-mirror
Warn
Audited by Socket on May 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's stated purpose largely matches its behavior, but it combines broad access to highly sensitive personal brain data with untrusted book content and external model-backed processing. The main concerns are privacy exposure, prompt-injection risk from book text, and moderate supply-chain trust in the repo-installed gbrain CLI rather than clear malicious intent.
Confidence: 84%Severity: 64%
Audit Metadata