supercharge
Warn
Audited by Socket on Jul 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core repo-scanning and refactoring behavior is broadly aligned with a code hygiene skill, but it delegates to unverified custom skills (/superplan, /superbuild) and combines untrusted code analysis with write/exec capabilities, creating medium transitive-trust and prompt-injection risk. No clear credential theft, exfiltration, or malware behavior is present.
Confidence: 86%Severity: 56%
Audit Metadata