rterm-discovery
Warn
Audited by Socket on Jul 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the core discovery/CMDB capabilities mostly fit the stated purpose, but the skill has a very large operational footprint: broad network scanning, multi-protocol remote access, numerous credential types, centralized inventory collection, and autonomous trigger/remediation paths. No clear malicious exfiltration endpoint is shown, so this is not confirmed malware, but it is a high-risk infrastructure skill that exceeds a narrow read-only inventory role in practice.
Confidence: 82%Severity: 78%
Audit Metadata