research
Warn
Audited by Socket on May 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill's purpose and capabilities are mostly aligned: autonomous research reasonably involves search, fetching, paper analysis, subagents, and report writing. The main risks are operational rather than clearly malicious: it processes untrusted external content with bash-enabled subagents, runs autonomously without per-step approval, and relies on local wrapper scripts whose full data flows are not visible here. Based on the provided evidence, this is best classified as SUSPICIOUS/MEDIUM-RISK rather than malicious.
Confidence: 84%Severity: 59%
Audit Metadata