thsr-timetable
Warn
Audited by Socket on Jul 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is narrowly scoped and has no malicious installer behavior, but it routes timetable queries and a long-lived JWT through a third-party CTeam/Superior APIs proxy instead of an official THSRC endpoint. That intermediary credential flow is the main risk; overall this looks more like a trust and data-routing concern than confirmed malware.
Confidence: 88%Severity: 56%
Audit Metadata