context-save
Warn
Audited by Socket on May 11, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core save/list behavior is benign, but this skill’s actual footprint is much larger than its stated purpose. Telemetry, artifact sync, routing injection, vendoring migration, and repo-modifying git actions are disproportionate for a context-save skill, and key network/data-flow behavior is delegated to unseen gstack binaries. This looks more like an all-purpose gstack control surface than a narrowly scoped save-progress skill.
Confidence: 81%Severity: 71%
Audit Metadata