skf-setup
Warn
Audited by Socket on May 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The visible skill is broadly aligned with setup/configuration, but it is explicitly fully autonomous, writes persistent state, and delegates real behavior to unseen markdown step files. There is no direct evidence of credential theft or exfiltration in the supplied content, yet trust is limited because the executable workflow logic was not provided and the agent is instructed to act without user confirmation.
Confidence: 83%Severity: 58%
Audit Metadata