user-authentication-system
Warn
Audited by Socket on Jul 19, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The stated purpose is plausible and aligned with normal auth tooling, and the referenced providers use legitimate official SDKs. However, the skill's actual execution path relies on an undocumented local script, and its quick-start encourages passing credential material on the command line. This is not confirmed malware, but it has medium security risk due to opaque automation and weak credential-handling guidance.
Confidence: 84%Severity: 56%
Audit Metadata