validator-check
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is purpose-aligned and does not show credential theft, exfiltration, or deceptive behavior. Risk is driven mainly by its dependence on an unverified local `agent-validate` executable and by limited autonomous fix/retry behavior over local files, so this is best classified as suspicious/high-risk from trust and execution standpoint rather than malware.
Confidence: 83%Severity: 72%
Audit Metadata