skill-studio

Warn

Audited by Socket on Apr 27, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s purpose mostly matches its capabilities, but it relies on an external local CLI whose provenance is not independently established in the provided evidence. Voice mode’s multi-vendor credential use is plausible for the feature, yet it increases trust and data-flow risk because the CLI mediates both content and API keys.

Confidence: 81%Severity: 63%
Audit Metadata
Analyzed At
Apr 27, 2026, 02:05 PM
Package URL
pkg:socket/skills-sh/glebis%2Fclaude-skills%2Fskill-studio%2F@52424f37517afed4677fb259585dccf8efe12bc8