evaluating-machine-learning-models
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is plausible, but the skill is under-specified and relies on an external community-distributed plugin with weak provenance details while also requesting wildcard shell access. No direct credential theft or exfiltration is shown, so this is not confirmed malware, but the install trust and permission scope are disproportionate for a simple model-evaluation helper.
Confidence: 83%Severity: 58%
Audit Metadata