marketplace
Warn
Audited by Socket on Mar 15, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's marketplace/delegation behavior matches its stated purpose, but it requires trusting an externally installed CLI and sending task data to unknown third-party agents. The main concerns are unpinned CLI supply-chain trust, external data sharing, and autonomous financially meaningful actions via worker/task workflows.
Confidence: 82%Severity: 69%
Audit Metadata