ascend-model-migration

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's remote admin and training workflow broadly matches its stated purpose, but it relies on transitive sub-skills and a weaker-provenance gitcode.com DrivingSDK source. No clear credential harvesting or exfiltration is shown, yet the combination of SSH access, remote execution, file transfer, and unreviewed nested skills makes it medium risk.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Apr 21, 2026, 07:10 AM
Package URL
pkg:socket/skills-sh/ascend%2Fagent-skills%2Fascend-model-migration%2F@646cdb749c4d55afdb58902ddb3fd008b7e8496b