product-skills
Audited by Socket on Sep 3, 2026
2 alerts found:
Anomalyx2SUSPICIOUS: the skill’s stated purpose is benign and its local Python tooling appears proportionate, but the Codex setup uses transitive skill installation from a personal GitHub repo through npx. That raises medium supply-chain and trust-chain risk even without evidence of credential theft or malicious data flows.
SUSPICIOUS. The stated capability is benign and proportionate for a research summarization skill, and the text shows no credential harvesting or exfiltration behavior. However, the installation provenance is inconsistent: personal GitHub clone source, unresolved publisher mismatch, and questionable OpenClaw install syntax create medium supply-chain risk that does not fit a cleanly distributed end-user skill.