pdf-brain-ingest

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the main ingest functions are plausible for a docs pipeline, but the skill’s real footprint is broader than its title suggests. Dependence on a personal CLI with incomplete install provenance, plus autonomous acquisition/download and SSH/SCP NAS backup, makes the capability set only partially aligned and raises medium-high security risk without confirming malware.

Confidence: 84%Severity: 71%
Audit Metadata
Analyzed At
Mar 18, 2026, 05:28 PM
Package URL
pkg:socket/skills-sh/joelhooks%2Fjoelclaw%2Fpdf-brain-ingest%2F@c1102db73d87a6f5529a8f779448c11e679310a3