team-assign
Warn
Audited by Socket on May 20, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s purpose and local file access are mostly consistent with team assignment, but its operational trust model is weak: core behavior depends on an undocumented local CLI, and outbound notifications may flow through an unspecified email MCP server. No evidence shows overt malware, credential theft, hidden execution, or clearly malicious exfiltration, but the provenance and data-flow ambiguity make the skill medium risk.
Confidence: 83%Severity: 58%
Audit Metadata