evolution

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is mostly coherent with its stated purpose of self-evolution and contribution, but it expands trust through a raw GitHub curl|bash installer, persistent hook installation, and automatic shell execution on user/tool events. No clear credential harvesting, exfiltration, or mismatched data routing is shown, so this is not malicious; the main concern is medium operational and supply-chain risk from auto-triggered local execution.

Confidence: 82%Severity: 52%
Audit Metadata
Analyzed At
Mar 13, 2026, 06:32 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fevolution%2F@932d47eb257b599660763b50ff07a0251096760e