stream-builder
Warn
Audited by Socket on May 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the main build/scaffold behavior aligns with the stated Stream app-builder purpose and uses mostly legitimate ecosystems, but the skill overreaches by auto-installing peer skills, optionally installing third-party skills from mutable GitHub branches, and pushing network/auth actions with minimal confirmation. This looks more like an aggressive automation skill than confirmed malware, but its transitive trust model and broad execution scope materially raise risk.
Confidence: 89%Severity: 68%
Audit Metadata