using-superpowers
Warn
Audited by Socket on Apr 5, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is mostly a workflow router, and its referenced installs appear to be official same-project sources, but it imposes unusually coercive agent-control rules and relies on transitive skill/plugin execution with opaque automatic setup. No direct credential theft, exfiltration, or malicious endpoint routing is present in this file.
Confidence: 86%Severity: 52%
Audit Metadata