setup-all

Warn

Audited by Socket on Apr 9, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

该 skill 的 stated purpose 与实际能力基本一致:它确实是一个“安装其他 skills”的聚合器。但其风险核心也正来自此目的本身:批量远程安装 + 自动运行子 skill + 传递 trust 到更多未审查 skill,显著扩大 agent 的执行面。未见明确凭证窃取或恶意外传证据,因此更接近高风险可疑/脆弱 skill,而非确认恶意。

Confidence: 89%Severity: 84%
SecurityMEDIUM
manifest.json

No malicious code is present in this fragment itself, but it materially increases supply-chain risk by configuring multiple third-party npx-sourced skills to auto-run during install/update. The described capabilities include API-key ingestion for a networked MCP web-search integration, authentication/config “login-free” setup, and direct removal/modification of user home configuration (~/.claude.json). This warrants reviewing the referenced packages’ code—especially install scripts and any handling of environment variables, filesystem writes, and network egress—before deployment in a trusted environment.

Confidence: 56%Severity: 72%
Audit Metadata
Analyzed At
Apr 9, 2026, 10:55 AM
Package URL
pkg:socket/skills-sh/horizon-continental%2Fhct-skills%2Fsetup-all%2F@64a428ed1ecced73a42b5be7d8d1056d09556841