hm-research
Warn
Audited by Socket on Aug 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally coherent for H&M research, but it routes all requests and the API credential through a third-party intermediary rather than an official H&M API. No malware-like installer, exfiltration endpoint, or credential overreach is shown, so this is mainly a medium data-flow and trust risk rather than confirmed malicious behavior.
Confidence: 84%Severity: 56%
Audit Metadata