genie-editor-workflow

Warn

Audited by Socket on Apr 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is broadly aligned with a browser-editor task workflow, but it expands trust to an unverified third-party Chrome extension plus CLI and gives the agent authority to ingest untrusted editor/browser content and then edit local code. No clear credential theft or overt exfiltration is shown, so this is not confirmed malware, but the combined supply-chain and prompt-injection exposure makes it a medium-risk skill.

Confidence: 75%Severity: 56%
Audit Metadata
Analyzed At
Apr 22, 2026, 02:32 AM
Package URL
pkg:socket/skills-sh/lintendo%2FAxhub-Skills%2Fgenie-editor-workflow%2F@c2fee3453e009efc864941d411259f9739f44e1a