connect-chatcut-desktop
Warn
Audited by Socket on Aug 30, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s behavior is mostly aligned with its stated purpose and avoids credential handling, but it instructs the agent to download and execute closed native binaries from direct vendor URLs with limited public verification. Because the core functionality depends on an externally distributed, not publicly verifiable desktop binary, the security risk is high even without strong evidence of malicious intent.
Confidence: 86%Severity: 74%
Audit Metadata