sql-planner
Warn
Audited by Socket on Mar 30, 2026
1 alert found:
AnomalyAnomalynew-connector/SKILL.md
LOWAnomalyLOW
new-connector/SKILL.md
SUSPICIOUS: the skill’s purpose is coherent, but it creates a high-risk connector pattern by persisting remote DB command templates and relying on raw {sql} shell injection at runtime. Main concerns are command-injection potential and plaintext credential storage, not overt malware or deceptive supply-chain behavior.
Confidence: 84%Severity: 69%
Audit Metadata