ingest-compliance-doc
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s stated purpose matches document-ingestion capabilities, and no explicit credential theft or attacker endpoint appears. Risk comes from opaque local execution (`./run.sh`), transitive trust in multiple composed skills, URL ingestion, and undocumented storage/proof-job endpoints, which make the actual execution footprint only partially verifiable.
Confidence: 82%Severity: 56%
Audit Metadata