reddit-moderate
Warn
Audited by Socket on Apr 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s stated purpose matches Reddit moderation, and its package installs/data flow to Reddit look broadly legitimate, but the actual action path depends on an unverified local script that receives live Reddit credentials and can perform autonomous moderation actions. This is not clear malware, yet it is higher-risk than a normal documentation skill because it combines raw credential loading, LLM processing of untrusted content, Bash access, and optional automatic approve/remove behavior.
Confidence: 86%Severity: 69%
Audit Metadata