gdpr-compliance-checker
Warn
Audited by Socket on May 28, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's main GDPR-audit purpose is plausible, but its actual footprint is broad: it reads sensitive repo areas including .env files, performs autonomous web research, and relies on unverified transitive format skills before proceeding. I found no confirmed malware, no remote-code execution, and no explicit credential forwarding to third-party binaries, but the combination of broad local access plus network activity plus transitive skill dependence makes the skill medium risk.
Confidence: 87%Severity: 66%
Audit Metadata