tech-research

Warn

Audited by Socket on Apr 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s core purpose is coherent, but its footprint is broader than a typical research skill because it combines untrusted-content ingestion, browser automation, local shell/config modification, and transitive browser-skill loading. I found no confirmed malware or credential theft, but the prompt-injection and execution-trust risks are substantial enough to classify it as medium-risk rather than benign.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 16, 2026, 07:24 AM
Package URL
pkg:socket/skills-sh/psylch%2Ftech-research-skill%2Ftech-research%2F@a4b93d8c4053ebd34ee277e33fbe4cdf5b485dc5