readwise-docs
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s purpose and API scope are mostly coherent for Readwise document management, and the data flow appears to target official Readwise services. However, the skill does not specify how the `readwise` CLI is obtained, and the documented command syntax does not match the currently published official CLI surface, leaving install trust and exact executable provenance unresolved. This is not confirmed malware, but it carries moderate supply-chain and credential-forwarding risk until the expected CLI source/version is clarified.
Confidence: 87%Severity: 56%
Audit Metadata