create-shortcut
Warn
Audited by Socket on Mar 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the documented local file management is mostly consistent with a shortcut factory, but the auto-create mode is overbroad because it executes inferred unknown commands before confirmation and persists them as new skills. No clear exfiltration or malware behavior is shown, and no external installer is used, but the autonomy and persistence make the skill medium/high risk.
Confidence: 87%Severity: 68%
Audit Metadata