workspace-guide
Warn
Audited by Socket on Mar 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core skill is mostly benign workspace documentation guidance, but it includes transitive skill-install instructions to an unverified third-party publisher. The official CLI path lowers supply-chain concern for the installer, yet the added trust chain is not necessary for the stated purpose and raises medium risk.
Confidence: 85%Severity: 58%
Audit Metadata