agent-updater

Warn

Audited by Socket on Mar 22, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s main purpose is coherent, but it combines external-content ingestion, Bash/file-write authority, and transitive invocation of other powerful skills. Its explicit security scan and provenance logging are strong mitigating controls, so this is not malware, but it remains medium risk due to prompt-injection exposure and broadened trust scope.

Confidence: 88%Severity: 57%
Audit Metadata
Analyzed At
Mar 22, 2026, 04:50 PM
Package URL
pkg:socket/skills-sh/oimiragieo%2Fagent-studio%2Fagent-updater%2F@8883695883ca434e76ba20af3cd32dd64f02610b