dc
Warn
Audited by Socket on May 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is coherent with its stated purpose and its auth/data flow appears to stay within Dcycle-controlled services, so there is no strong sign of malware or credential harvesting. However, it relies on a required external `dc` CLI without publicly verified install/source/release provenance in the provided evidence, which triggers a high supply-chain risk floor; overall classification is suspicious/high-risk from trust verification gaps, not from malicious behavior in the skill text itself.
Confidence: 86%Severity: 78%
Audit Metadata