web-content-fetcher
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is web content fetching, but the skill’s main fallback strategy routes arbitrary URLs through third-party proxy services, which expands data exposure beyond direct retrieval. It is not malware and has no executable installer, but the proxy-based data flow and arbitrary untrusted content handling make it medium risk for privacy leakage and prompt-injection exposure.
Confidence: 88%Severity: 63%
Audit Metadata