awiki-group

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s stated purpose matches its visible group-management commands, and it includes confirmation rules for destructive actions, but its core execution depends on an unverifiable external CLI and an unverified shared skill. There is no direct evidence of malware or credential theft in the visible text, yet the opaque binary trust boundary and wildcard CLI permission make the skill high risk.

Confidence: 85%Severity: 82%
Audit Metadata
Analyzed At
Apr 12, 2026, 12:50 PM
Package URL
pkg:socket/skills-sh/agentconnect%2Fawiki-cli%2Fawiki-group%2F@e4e6c97a822e9cd80f8dbc55a2207aedbcf2f830