open-generative-ai
Warn
Audited by Socket on Sep 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is largely coherent with the product it claims to operate, and its data flows to api.muapi.ai match the official backend rather than an unknown interceptor. However, it normalizes installing unsigned binaries, possible host security-control weakening, and a third-party submodule in the build chain, so overall risk is medium even without evidence of outright malicious intent.
Confidence: 87%Severity: 61%
Audit Metadata