ln-832-bundle-optimizer
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core capability matches bundle optimization, but the skill expands trust by allowing runtime fetch of remote instruction files and by executing auto-detected project build scripts with Bash. Those behaviors are somewhat proportionate to the task, so this is not malicious, but the remote instruction fallback and command execution make it medium risk rather than benign.
Confidence: 86%Severity: 53%
Audit Metadata