configuration
Warn
Audited by Socket on Apr 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
Likely benign in purpose and data flow, but the documented primary dependency is a standalone `ibmi` CLI whose official source could not be verified from the provided evidence. That install-trust gap materially raises risk even though the skill’s stated capabilities are otherwise coherent and there is no clear exfiltration behavior.
Confidence: 84%Severity: 70%
Audit Metadata