ai-do

Warn

Audited by Socket on May 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's stated routing purpose matches its behavior, but it materially increases trust exposure by instructing installation of other skills from a third-party repository and by ingesting remote skill content to guide actions. No clear credential theft or exfiltration is present, so this is not malicious, but the transitive-install and remote-instruction pattern makes it medium risk.

Confidence: 89%Severity: 68%
Audit Metadata
Analyzed At
May 7, 2026, 03:03 PM
Package URL
pkg:socket/skills-sh/lebsral%2FDSPy-Programming-not-prompting-LMs-skills%2Fai-do%2F@76fff802bfff86bc25e6e915728b00e680bfc4f0