wispr-fix
Warn
Audited by Socket on Aug 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is coherent for a local Wispr correction utility, and no credential harvesting or outbound data flow is visible in the skill text. However, the skill’s entire effect depends on an unseen local executable script with no provenance or verification details, so the execution trust is disproportionally weak for the level of filesystem and app-control access it exercises.
Confidence: 84%Severity: 72%
Audit Metadata