context-save
Warn
Audited by Socket on Jun 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core checkpoint behavior is coherent and mostly local, but the skill is not tightly scoped: a context-save tool also performs routing injection, vendoring migration, repo edits, and git commits through local helper binaries. There is no clear exfiltration, yet the purpose-capability mismatch and autonomous repo-changing setup flows make the skill higher risk than a normal save-state utility.
Confidence: 100%Severity: 60%
Audit Metadata