agent-retro
Warn
Audited by Socket on Mar 25, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is locally scoped and has no external download or exfiltration path, but it reads broad prior conversations and persists derived guidance into USER.md, SOUL.md, AGENTS.md, and MEMORY.md without prior user approval. The main risk is prompt-injection persistence and unsafe autonomous self-modification, not malware.
Confidence: 89%Severity: 63%
Audit Metadata