llm-doc-gen
Warn
Audited by Socket on May 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is coherent, but the skill depends on external LLM CLI tools and ambiguous sdd command provenance, with direct reading of untrusted code and likely outbound transmission to third-party model providers. This looks more like a risky developer workflow than confirmed malware.
Confidence: 84%Severity: 69%
Audit Metadata