ralph-kage-bunshin-loop
Warn
Audited by Socket on Mar 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core local worker-loop behavior is coherent, but the skill expands its trust boundary by delegating to multiple unspecified external skills and by processing untrusted web content while retaining write/exec powers. Data flow is mostly local and loopback, so this is not confirmed malware, but it is a medium-high risk orchestration skill with transitive trust and prompt-injection exposure.
Confidence: 84%Severity: 69%
Audit Metadata