task-generation-mode

Warn

Audited by Socket on May 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the task-planning behavior is largely coherent and locally scoped, but the install path relies on a personal GitHub skill repo with weak provenance and the skill explicitly requires a second unreviewed skill, creating transitive trust risk. No clear credential theft, exfiltration, or malicious execution is visible in the provided skill content.

Confidence: 86%Severity: 61%
Audit Metadata
Analyzed At
May 16, 2026, 03:36 AM
Package URL
pkg:socket/skills-sh/ChristopherAlphonse%2Fcalphonse-skills%2Ftask-generation-mode%2F@1f438fa4899936b60803692e833f975a37ea0faf