email-design
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core email-design content is benign, but the skill expands into external CLI installation/execution, credentialed login, and transitive skill installation. Same-project evidence suggests this is not outright malicious, yet the raw GitHub install path, CLI-name inconsistency (`belt` vs documented `infsh`), and extra skill-loading instructions make the trust model weaker than the stated purpose warrants.
Confidence: 82%Severity: 61%
Audit Metadata