chip-specs
Warn
Audited by Socket on Sep 18, 2026
1 alert found:
AnomalyAnomalyrules/flow-chip-identify.md
LOWAnomalyLOW
rules/flow-chip-identify.md
The fragment is primarily a chip-identification workflow and contains no direct malware payload. However, it includes a high-impact instruction to modify user-scoped Claude MCP configuration and connect to an external server when a tool is unavailable. That behavior should require explicit user approval and independent verification of the endpoint and server provenance. Treat the MCP setup directive as a supply-chain and prompt-injection risk; the supplied text alone does not establish malicious intent by the server.
Confidence: 96%Severity: 58%
Audit Metadata