pnpm Fast Disk-Efficient Package Manager
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the visible skill content is not directly harmful, but it mainly serves as a transitive installer for another skill rather than pnpm functionality itself. That mismatch and the remote skill-loading trust chain make it moderately risky, though there is no clear evidence of credential theft, exfiltration, or malware in the provided content.
Confidence: 84%Severity: 58%
Audit Metadata