stelow-product-scope-executor

Warn

Audited by Socket on Jul 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is broadly aligned with an execution-orchestrator purpose, but it grants excessive autonomous code-execution authority, processes external plan content before taking actions, and references incompletely verified package provenance. No clear credential theft or exfiltration is present, so this is high-automation operational risk rather than confirmed malware.

Confidence: 84%Severity: 69%
Audit Metadata
Analyzed At
Jul 18, 2026, 10:50 AM
Package URL
pkg:socket/skills-sh/calionauta%2Fagent-sync-public%2Fstelow-product-scope-executor%2F@ed1e2dbf00a23efc488fa1254cf8c8f9e86412da877a4221073dd5aaf57751ca
Security Audit — socket — stelow-product-scope-executor