convert-to-apple-container
Warn
Audited by Socket on Apr 26, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core runtime-conversion workflow is broadly consistent with the stated purpose, and the Apple Container download source appears proportionate. The main concern is the deliberate instruction to expose a credential proxy on 0.0.0.0, with only conditional firewall mitigation, plus privileged firewall edits and remote branch merging. This looks more like a risky operations skill than outright malware.
Confidence: 87%Severity: 72%
Audit Metadata