agent-toolkit-setup
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s stated purpose matches its basic API and .env behavior, but it forwards credentials to an unconstrained, not publicly verified base URL and then loads remote skill instructions into agent context. That combination is coherent with a registry client, yet the trust boundary is too weak to treat as benign.
Confidence: 84%Severity: 72%
Audit Metadata