llm-wiki

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core local wiki scaffolding behavior is coherent, but the skill's footprint expands beyond simple setup through third-party InfraNodus data routing, broad Bash/MCP access, untrusted external content ingestion with write/exec capability, and instructions to install other skills. The main concern is trust-chain and data-flow expansion rather than clear malicious intent.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
Apr 29, 2026, 03:04 PM
Package URL
pkg:socket/skills-sh/infranodus%2Fskills%2Fllm-wiki%2F@331b8fa1a4c228cc3ff6a0d7cc541ea4f56d6be2
Security Audit — socket — llm-wiki