checkout-abandonment
Warn
Audited by Socket on Aug 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the main audit capability matches the stated purpose, but the skill also executes opaque local RMBC binaries, performs background telemetry/update actions, writes persistent state, and includes unrelated promotional/setup flows. This is not confirmed malware, but its execution and data-flow footprint is broader than a narrowly scoped checkout-abandonment skill.
Confidence: 77%Severity: 57%
Audit Metadata