pdf-brain-ingest

Warn

Audited by Socket on Mar 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's capabilities mostly match its stated purpose, and the primary data flow—sending document content into a docs memory pipeline—is coherent. The main risk is trust in external CLIs and remote services (`joelclaw`, optional `aa-book`) without clear release/install verification in the skill, plus the ability to trigger remote operational workflows. This looks more like a legitimate but moderately risky operator skill than confirmed malicious behavior.

Confidence: 77%Severity: 58%
Audit Metadata
Analyzed At
Mar 16, 2026, 01:02 PM
Package URL
pkg:socket/skills-sh/joelhooks%2Fjoelclaw%2Fpdf-brain-ingest%2F@22f1cc956632d3ae18723ed7bf56018e07263f4e