clinical-reports-hardened
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core documentation capability is coherent and mostly local, but the mandatory use of another skill introduces avoidable transitive trust for highly sensitive clinical data. No direct exfiltration, credential harvesting, or malicious payload behavior is evident in the provided skill, so this looks like elevated security exposure rather than malware.
Confidence: 84%Severity: 52%
Audit Metadata