blog-rewrite
Warn
Audited by Socket on May 5, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core blog-rewrite purpose broadly matches local file reads/writes and web research, but the skill goes beyond normal editing by explicitly teaching AI-detection evasion and by optionally chaining into third-party sub-skills/MCPs that may receive credentials. No direct malware or exfiltration is evident, yet the combination of untrusted-content ingestion, file modification, and optional external tool trust makes the skill medium risk.
Confidence: 84%Severity: 57%
Audit Metadata