trailmark-structural
Warn
Audited by Socket on Mar 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS due to trust mismatch around the unverifiable `trailmark` binary, not because of clear malicious behavior. Purpose and local file access are proportionate to structural analysis, but the main executable's provenance is unresolved, so the skill carries high supply-chain risk despite limited data-exfiltration evidence.
Confidence: 84%Severity: 72%
Audit Metadata