helpmetest-test-generator
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's purpose is broadly consistent with QA test generation, but its footprint is wider than necessary: wildcard MCP permissions, transitive reliance on other skills/tools, autonomous write/run/update behavior, and live processing of untrusted app content create meaningful risk. Installer evidence for the vendor ecosystem is same-org but still curl|bash. No clear credential theft or malicious exfiltration is evident.
Confidence: 86%Severity: 61%
Audit Metadata