external-gitcode-ascend-npu-adapter-reviewer

Warn

Audited by Socket on May 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

该skill总体与其“GPU到昇腾NPU迁移审查”目的基本一致,未见凭证收集、隐蔽外传、第三方代理转发或恶意预执行。主要风险来自分析任意外部仓库并生成/执行脚本的工作流,以及安装建议未固定版本带来的供应链与执行面风险。因此应判定为SUSPICIOUS而非恶意:用途合理,但执行与外部内容处理能力偏强,需人工审查仓库内容和生成脚本。

Confidence: 85%Severity: 58%
Audit Metadata
Analyzed At
May 19, 2026, 06:30 AM
Package URL
pkg:socket/skills-sh/ascend-ai-coding%2Fawesome-ascend-skills%2Fexternal-gitcode-ascend-npu-adapter-reviewer%2F@9fdf52e3383f9fe8db8f96ac61e5ee9e06ebd724
Security Audit — socket — external-gitcode-ascend-npu-adapter-reviewer