submit-work
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's stated purpose (submitting OpenAnt task deliverables via the official CLI) is coherent with its described capabilities and workflow. The data flows involve uploading deliverables to the service and submitting metadata/text, which is appropriate for the task submission process. There are no evident credential harvesting or insecure data practices within the provided documentation. Trust sources (npm registry via npx) are standard and verifiable, reducing supply-chain risk. Overall, the footprint is benign and proportionate to the described purpose, with medium awareness required for outbound data (uploads) and external proof URLs if used.
Confidence: 98%
Audit Metadata