aif-skill-generator
Fail
Audited by Socket on Apr 3, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
SUSPICIOUS: the skill’s core purpose is coherent, and its use of official ecosystem CLIs is plausible, but it combines arbitrary web ingestion, file generation, shell execution, and explicit third-party skill installation. The main risk is transitive trust and prompt-injection exposure from external skills/URLs rather than clear malicious intent.
Confidence: 88%Severity: 72%
Audit Metadata