dev-swarm-project-restore

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core restore behavior mostly matches the stated purpose, but the skill has medium risk because it trusts arbitrary remote repositories and submodule URLs, processes untrusted repo content while writing files, and relies on an unreviewed secondary skill. No clear evidence of credential theft or overtly malicious data exfiltration appears in the provided excerpt.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Mar 13, 2026, 08:30 PM
Package URL
pkg:socket/skills-sh/X-School-Academy%2Fai-dev-swarm%2Fdev-swarm-project-restore%2F@23a2a5d653e4279e530b6fa72811c4bbc9394725