character-design-sheet

Warn

Audited by Socket on Jun 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s image-generation purpose is coherent, but its footprint includes transitive skill installation, mutable raw GitHub install docs, and credential use through an external CLI. This looks more like a legitimate but higher-trust workflow than malware; the main concerns are supply-chain expansion and credential forwarding rather than clear exfiltration or deception.

Confidence: 82%Severity: 64%
Audit Metadata
Analyzed At
Jun 19, 2026, 02:15 AM
Package URL
pkg:socket/skills-sh/halt-catch-fire%2Fskills%2Fcharacter-design-sheet%2F@7bf657ce773db299eeb6a836569272526e1859218afc6cdd3c9bb972de1a7059
Security Audit — socket — character-design-sheet