cold-start

Warn

Audited by Socket on May 15, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core import behavior is consistent with a brain-bootstrap skill, but the data-flow design is risky because sensitive Google/social access is routed through ClawVisor, a third-party intermediary, with intentionally broad standing-task scope. This is not confirmed malware, but it creates medium-high security risk and trust concerns disproportionate to a single import session.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
May 15, 2026, 03:20 PM
Package URL
pkg:socket/skills-sh/garrytan%2Fgbrain%2Fcold-start%2F@5f84a2e7bb708ca4c2f5bc7a158f26fffbba5674
Security Audit — socket — cold-start