remote-control

Warn

Audited by Socket on Aug 26, 2026

2 alerts found:

AnomalySecurity
AnomalyLOW
remote-control/SKILL.md

SUSPICIOUS: the skill’s core behavior is coherent with remote mobile access, and the Anthropic remote-control component is official, but it grants unusually broad multi-project bash and file access through a custom unverifiable local MCP server. Main risk is high-impact remote control and data exposure across all registered projects rather than clear malicious exfiltration.

Confidence: 81%Severity: 63%
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent, and the remote-control flow aligns with official Claude Code behavior, but the key install and control surface relies on an unverified local script and an unverifiable MCP server. Broad cross-project shell/file access is proportionate to orchestration, yet the unresolved provenance keeps risk high enough to avoid a benign classification.

Confidence: 83%Severity: 74%
Audit Metadata
Analyzed At
Aug 26, 2026, 06:02 PM
Package URL
pkg:socket/skills-sh/grahama1970%2Fagent-skills%2Fremote-control%2F@aae52f94c57f32520d8c9a4c512ff538ed6eabbd94345c1c54320a98f438a5dc
Security Audit — socket — remote-control