skillpack-check

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is legitimate and the `gbrain` dependency appears same-project, but the skill overreaches for a read-only health check by telling the agent to automatically `eval` remediation commands from CLI output. The main risk is command execution and autonomy mismatch, not confirmed malware.

Confidence: 88%Severity: 64%
Audit Metadata
Analyzed At
Apr 22, 2026, 11:16 AM
Package URL
pkg:socket/skills-sh/garrytan%2Fgbrain%2Fskillpack-check%2F@964d9a1fb945160219455dbe0593ba38eaa3a796