web-search
Warn
Audited by Socket on Apr 9, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core search/extraction purpose is coherent, and the CLI installer appears same-org and officially documented, but the skill routes user data through an intermediary platform CLI, grants broader-than-needed `infsh` execution, and encourages transitive skill installation. This is not confirmed malware, but it carries meaningful medium risk for data exposure and trust expansion.
Confidence: 83%Severity: 62%
Audit Metadata