qveris-official
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent with a broad aggregator purpose, and the QVeris domain/repo relationship looks legitimate. The main concern is proportionality and data-flow integrity: it centralizes many external searches and actions behind one intermediary API with auto-invocation, so user queries and execution parameters are brokered through QVeris rather than official service endpoints.
Confidence: 84%Severity: 72%
Audit Metadata