dual-ai
Warn
Audited by Socket on Aug 24, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill's core purpose matches its capabilities, but it deliberately grants two external AI agents full-permission/approval-bypass access, forwards project context to them, and can chain into additional skills/workflows. Install trust is mostly acceptable for official Claude/Codex CLIs, but the autonomy, prompt-injection surface, and data exposure make the overall skill high risk.
Confidence: 87%Severity: 81%
Audit Metadata