genie-editor-workflow
Warn
Audited by Socket on Apr 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is broadly aligned with a browser-editor task workflow, but it expands trust to an unverified third-party Chrome extension plus CLI and gives the agent authority to ingest untrusted editor/browser content and then edit local code. No clear credential theft or overt exfiltration is shown, so this is not confirmed malware, but the combined supply-chain and prompt-injection exposure makes it a medium-risk skill.
Confidence: 75%Severity: 56%
Audit Metadata