dream
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's core behavior is coherent with its stated purpose, and there is no strong sign of malware or deceptive installer behavior. However, it performs broad harvesting of local conversation histories and forwards distilled content into an external/networked knowledge system (Sibyl) without specifying endpoints, auth flow, or data minimization. The main risk is privacy and memory-poisoning scope, not overt maliciousness.
Confidence: 83%Severity: 56%
Audit Metadata