ollama-search
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Ollama Search skill presents a coherent, well-scoped tool for cloud-based web search and content retrieval. Its data flows and credential handling are consistent with a legitimate developer tool: API keys are supplied via environment variables, and the scripts perform read-only API calls to official endpoints. No unverifiable binaries, credential harvesting, or autonomous actions are evident. The security risk is low to moderate (benign-to-suspicious), primarily driven by standard network data flows and the potential for user-query data exposure to a cloud service. Overall, the footprint is proportionate to the stated purpose, with no clear indicators of malicious behavior.
Confidence: 98%
Audit Metadata