phase-running

Warn

Audited by Socket on May 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s capabilities mostly match its stated purpose, but it grants a background sub-agent broad autonomous edit/execute behavior and runs verification commands sourced from plan content. No credential harvesting, external exfiltration, or suspicious installer is visible, so this is not malware, but it carries moderate operational risk.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 11, 2026, 09:44 PM
Package URL
pkg:socket/skills-sh/desplega-ai%2Fai-toolbox%2Fphase-running%2F@b2d523d5fe7efd37d136d48fee375321a944703c