remote-skill-test
Warn
Audited by Socket on Apr 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the behavior mostly matches a remote skill-testing purpose, but it achieves that by installing other skills, bypassing SSH host verification, loading remote secrets from interactive shell config, and running OpenCode with permission checks disabled. The footprint is coherent yet disproportionately powerful, so this is not confirmed malware but it is a high-risk orchestration skill.
Confidence: 91%Severity: 86%
Audit Metadata