worker
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s behavior mostly matches a team-worker orchestration role and does not request obvious secrets or exfiltrate arbitrary files, but it relies on an unverified `omx` CLI and opaque API path. That unverifiable required executable is the main reason for the elevated risk.
Confidence: 84%Severity: 82%
Audit Metadata