toolify
Warn
Audited by Socket on Jul 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s purpose is coherent, and most endpoints/installers are official, but it materially expands trust by invoking external CLIs, handling live secrets, and delegating to another skill/tooling layer. Risk is driven more by credential forwarding and transitive trust than by clear malicious behavior.
Confidence: 85%Severity: 56%
Audit Metadata