iblai-init
Warn
Audited by Socket on Apr 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the local CLAUDE.md update behavior is mostly aligned with the stated purpose, but the optional installation of an additional remote skill is a disproportionate transitive trust expansion. No direct malware or credential theft is evident, yet the skill increases agent capability through third-party instructions unrelated to the core file-editing task.
Confidence: 87%Severity: 58%
Audit Metadata