pinme-email
Warn
Audited by Socket on Apr 30, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is narrowly scoped and lacks malware-like install behavior, but trust in the remote service is not independently established and the overrideable BASE_URL can redirect the API key and email payload to another host. Main risk is unverifiable endpoint provenance and credential routing, not overt malicious code.
Confidence: 82%Severity: 52%
Audit Metadata