content-audit
Warn
Audited by Socket on Sep 30, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s stated purpose is coherent with its file reads and optional report write, but it uses load-time pre-execution of an unreviewed local helper script outside the skill directory. No evidence shows remote downloads, credential harvesting, or exfiltration, so this is not confirmed malware; the main concern is the pre-execution trust boundary and unverifiable helper behavior.
Confidence: 89%Severity: 56%
Audit Metadata