multi-model-validation

Warn

Audited by Socket on Sep 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's high-level purpose is coherent, but its actual footprint relies on a third-party proxy CLI to transmit local code to many external models, uses auto-approve flags that weaken user approval, and expands trust through additional skills/tools. Same-org Claudish provenance reduces the chance of outright malware, but the combination of proxy routing, external execution, and approval bypass makes this a medium-high risk skill rather than a benign documentation guide.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
Sep 4, 2026, 08:20 PM
Package URL
pkg:socket/skills-sh/involvex%2Finvolvex-claude-marketplace%2Fmulti-model-validation%2F@54db243ea888fd9c8defae510cc5001373b1be9705f25a7faaa22db71d254280
Security Audit — socket — multi-model-validation