esm
Audited by Socket on Feb 15, 2026
1 alert found:
MalwareThis skill documentation is coherent: capabilities match the described purpose (protein sequence generation, structure prediction, embeddings) and required credentials (Forge token) are proportional. No direct malicious code or supply-chain credential-harvesting patterns are present in the provided text. Main issues are: (1) operational risk from dual-use biological capabilities (biosafety/ethics) inherent to protein design tools, (2) unsafe example showing inline tokens, (3) use of a URL shortener and a likely typo in install instructions which could be cleaned up. Overall there is low likelihood of embedded malware, but moderate security/operational risk primarily from misuse and poor secret-handling practices.