add-ollama-tool
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint appears coherent with its stated purpose: it exposes locally hosted Ollama models via an MCP server to enable efficient on-device task processing for the container agent. Data flows are localized (agent -> MCP -> Ollama -> MCP -> agent) with no evident credential handling or external exfiltration. The main risk stems from potential supply-chain concerns if any binaries or scripts are sourced from untrusted channels; otherwise, the approach is proportionate and low-risk for a local-model integration.
Confidence: 98%
Audit Metadata