ttttt
Warn
Audited by Socket on Sep 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is internally consistent with its stated purpose of tmux session control, and it uses only standard system tools with no external installer or credential-forwarding binary. However, its actual capability is powerful: it can read full terminal history, inject arbitrary commands, and operate on remote hosts via ssh/scp. Those permissions are proportionate to a terminal takeover skill but still create medium-high operational risk, especially because capture-pane may expose sensitive terminal content and send-keys can execute arbitrary shell actions.
Confidence: 91%Severity: 66%
Audit Metadata