moa
Warn
Audited by Socket on Jul 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose largely matches its behavior, but it materially expands data exposure by sending prompts and possibly repository contents to multiple external backends, including OpenRouter as an intermediary. The biggest concern is trust/provenance of the local ~/.claude skill script plus credential/data forwarding to third-party tooling; this is risky but not clearly malicious from the provided evidence.
Confidence: 84%Severity: 72%
Audit Metadata