expanso-priority-queues
Warn
Audited by Socket on Jul 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s purpose is plausible, but its execution details are internally inconsistent with the reviewed official Expanso tooling (`expanso` vs `expanso-edge`/`expanso-cli`, and mismatched run syntax). Install trust is moderate rather than malicious because the domains appear same-org, but the unpinned curl|shell pattern and opaque credential scope increase risk. No direct evidence of credential theft or malicious exfiltration is present in the supplied skill text alone.
Confidence: 83%Severity: 56%
Audit Metadata