self-improvement

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is coherent with its stated purpose and uses an official GitHub dependency, so this is not malware-like. However, it instructs autonomous persistence of content into project and user memory files, and it can ingest untrusted GitHub text before writing durable rules, creating meaningful prompt-injection and scope risks.

Confidence: 88%Severity: 64%
Audit Metadata
Analyzed At
Apr 8, 2026, 04:15 PM
Package URL
pkg:socket/skills-sh/trtmn%2Fagent-skills%2Fself-improvement%2F@d1e651f90438ca1147f2ede77fb8d4aad5195c20