ln-820-dependency-optimization-coordinator
Warn
Audited by Socket on Apr 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core behavior is mostly consistent with a dependency-upgrade coordinator, but the fallback remote fetch of mutable GitHub raw instruction files and explicit transitive worker-skill delegation increase trust and prompt-injection risk beyond a purely local coordinator. No clear credential theft or incompatible malicious behavior is shown.
Confidence: 84%Severity: 58%
Audit Metadata