skills-hub

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Benign documentation artifact overall. The fragment outlines a legitimate workflow for managing agent skills via a CLI, with potential supply-chain risk stemming from external registries and artifact integrity. The inconsistency about publishing should be fixed, and real-world usage should emphasize secure transport, signing, and access controls.

Confidence: 75%Severity: 65%
Audit Metadata
Analyzed At
Mar 1, 2026, 05:15 AM
Package URL
pkg:socket/skills-sh/ThinkfleetAI%2Fthinkfleet-engine%2Fskills-hub%2F@f3ed2c9eef2f06e7c1519cc6b0ceee0f8f824545