ai-gateway
Warn
Audited by Socket on Apr 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is mostly aligned with its stated purpose and uses narrowly scoped commands, but it relies on an unpinned npm CLI and routes prompts and paid usage through a third-party gateway instead of official provider APIs. This looks more like a legitimate but medium-risk gateway skill than overt malware.
Confidence: 79%Severity: 56%
Audit Metadata