gtm-workflow-enrich-network
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The main risk is transitive trust: this skill tells the agent to install additional skills, which inherit agent permissions and shift core execution to external instructions. Aside from that, the capability and provider data flows are largely consistent with the stated network-enrichment purpose, and the installer path appears to be the official Skills CLI rather than an obviously rogue payload.
Confidence: 86%Severity: 58%
Audit Metadata