user-wf
Warn
Audited by Socket on Mar 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the visible skill is minimal and not overtly malicious, but it delegates execution to an ambiguously named external CLI and an unseen workflow. The main issue is trust and opacity, not confirmed credential theft or exfiltration.
Confidence: 84%Severity: 56%
Audit Metadata