world2agent-protocol
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s stated purpose matches sensor/plugin installation, but its footprint includes high-risk transitive skill installation and an explicit dangerous development-channel load. No clear credential theft or malicious exfiltration is shown, yet execution trust is weak and downstream third-party sensors/plugins materially raise security risk.
Confidence: 82%Severity: 76%
Audit Metadata