Warn
Audited by Socket on Mar 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill’s core capabilities match its stated purpose, but it has a meaningful security footprint: third-party CLI installation, plaintext password storage, possible TLS-verification bypass, and autonomous email sending/receiving. This looks like a legitimate email-management skill with medium-to-high operational risk rather than confirmed malware.
Confidence: 82%Severity: 74%
Audit Metadata