talk-to

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's messaging purpose is coherent, but it relies on opaque internal commands and a shell-based notifier with unverifiable provenance, and it enables autonomous multi-turn agent-to-agent messaging without per-action approval. Risk is driven more by opaque execution and autonomous behavior than by confirmed malware or explicit credential theft.

Confidence: 82%Severity: 64%
Audit Metadata
Analyzed At
Apr 11, 2026, 02:11 PM
Package URL
pkg:socket/skills-sh/Soul-Brews-Studio%2Farra-oracle-skills%2Ftalk-to%2F@0d14116b6785cd1c9b49707fcff14060ed7a136b