latex

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s stated LaTeX/PDF-conversion purpose is coherent, and its local file/template access is proportionate. Risk comes from opaque local scripts and optional LLM extraction through third-party/gateway providers—especially the preferred chatanywhere route—which may transmit document content and credentials outside official first-party APIs. No strong evidence of malware or deliberate credential theft is visible in the skill text alone, but the external-provider and black-box script trust model makes this higher than benign.

Confidence: 79%Severity: 59%
Audit Metadata
Analyzed At
Mar 18, 2026, 11:19 PM
Package URL
pkg:socket/skills-sh/canyangliunian%2Fagent-skills%2Flatex%2F@b1fe9ffb47ea0965004fde9195f87e4154cb0aaf
Security Audit — socket — latex