sales-firsto
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's main advisory content is benign and proportionate, but it contains a transitive skill-install instruction. The installer appears to be the official Skills CLI, reducing malware concern, yet the referenced target skill source was not independently verified and the unpinned `npx` execution adds supply-chain risk.
Confidence: 90%Severity: 58%
Audit Metadata