k7-total-security-configuration
Warn
Audited by Socket on Jul 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The stated purpose is plausible, but the trust chain is not: a security configuration skill anchors itself to an unofficial personal 'unlock/patch' repo and then routes admin auth material and operational control through that unverifiable toolset. This makes the skill high risk even without explicit proof of exfiltration.
Confidence: 91%Severity: 89%
Audit Metadata