cross-modal-review
Warn
Audited by Socket on May 8, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The main capability fits the stated purpose, and the referenced Codex tooling appears to be officially distributed, so this is not a clear malware or fake-installer case. The key risk is intentional concealment: the skill directs the agent to hide refusals and hidden model switching from the user, while also exporting potentially sensitive work product to alternate providers and relying on a separate /codex skill not defined here.
Confidence: 85%Severity: 58%
Audit Metadata