execute-add
Warn
Audited by Socket on Apr 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill’s behavior matches its stated task-management purpose and does not show credential harvesting or suspicious network routing. The main issue is trust: it depends on an external `agkan` CLI whose official provenance is not strongly independently verified, so the skill is best classified as suspicious/high-risk from a supply-chain perspective rather than malicious.
Confidence: 86%Severity: 78%
Audit Metadata