splitwise-cli
Warn
Audited by Socket on Mar 9, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill mentions saving credentials to a config file and environment variables, which enables potential exfiltration if the agent copies or transmits these credentials without user consent or explicit per-call authorization.
Confidence: 80%Severity: 75%
Audit Metadata