helpmetest-test-generator

Warn

Audited by Socket on Mar 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's purpose is broadly consistent with QA test generation, but its footprint is wider than necessary: wildcard MCP permissions, transitive reliance on other skills/tools, autonomous write/run/update behavior, and live processing of untrusted app content create meaningful risk. Installer evidence for the vendor ecosystem is same-org but still curl|bash. No clear credential theft or malicious exfiltration is evident.

Confidence: 86%Severity: 61%
Audit Metadata
Analyzed At
Mar 21, 2026, 11:50 PM
Package URL
pkg:socket/skills-sh/help-me-test%2Fskills%2Fhelpmetest-test-generator%2F@bf6008bdc759a384c69dfd7b9704b22432ffcada
Security Audit — socket — helpmetest-test-generator