awiki-msg

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The messaging purpose and documented commands are internally coherent, and the skill asks for confirmation before state-changing actions. However, it relies on a required but unverifiable external `awiki-cli` binary and grants broad wildcard CLI execution without showing an official distribution or provenance path. This is a high supply-chain risk, not confirmed malware.

Confidence: 83%Severity: 82%
Audit Metadata
Analyzed At
Apr 12, 2026, 12:50 PM
Package URL
pkg:socket/skills-sh/agentconnect%2Fawiki-cli%2Fawiki-msg%2F@597345e6ac1ed05daec29630834b86cce54302b0
Security Audit — socket — awiki-msg