wasted-spend-finder

Fail

Audited by Snyk on Apr 8, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.70). This is a direct git clone of a personal/unknown GitHub repository that the skill instructs you to install into your local skills directory — while GitHub is a legitimate host, cloning and installing code from an unvetted user/repo can introduce malicious scripts, so it is moderately high risk.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Apr 8, 2026, 06:56 PM
Issues
1