agent-skill-stack

Warn

Audited by Socket on Jul 23, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent, but the skill’s footprint is inherently high-trust because it discovers, evaluates, and installs other skills from third-party sources. Main risk is transitive supply-chain exposure and prompt-injection from untrusted skill content, not confirmed malware.

Confidence: 89%Severity: 74%
Audit Metadata
Analyzed At
Jul 23, 2026, 08:06 PM
Package URL
pkg:socket/skills-sh/github%2Fawesome-copilot%2Fagent-skill-stack%2F@c68865b9dbb9f5e2b41582edacde24e5460f4ffbacda20c8363a92ae98c03461
Security Audit — socket — agent-skill-stack