kilo-gateway
Warn
Audited by Socket on Aug 3, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is internally coherent and uses official docs/SDK install paths, so it does not look malicious. However, its core design routes prompts and credentials through Kilo as an intermediary, and BYOK asks users to place provider secrets—including potentially AWS credentials—into Kilo's service, creating a moderate trust and data-flow risk that is proportionate to the gateway purpose but still significant.
Confidence: 90%Severity: 56%
Audit Metadata