pm-research-about
Fail
Audited by Socket on Feb 26, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The provided fragment is internally consistent with its described purpose (a template-driven, multi-phase research/indexing skill for Claude Code via JAAN). There are no embedded credential exposures, suspicious network calls, or execute-on-download patterns in the fragment itself. The primary risk comes from external inputs (WebFetch/WebSearch results) used during research, which should be treated as untrusted, but this risk is inherent to any web-based research tool rather than a deterministically malicious pattern in the fragment. Overall assessment: BENIGN with caution advised for external content sources.
Confidence: 95%Severity: 90%
Audit Metadata