nerdzao-elite-gemini-high
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the text itself is prompt-only and contains no direct credential theft, installer, or exfiltration, but its actual footprint is unclear because it delegates nearly all behavior to multiple unpinned community subskills. The main risk is transitive trust and ambiguous resolution of bare @skill names, making the real capabilities broader and less auditable than the stated 'safe' meta-workflow suggests.
Confidence: 84%Severity: 58%
Audit Metadata