observability
Warn
Audited by Socket on May 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s monitoring purpose is plausible, but it relies on external CLI binaries whose exact provenance is not verifiable from the evidence and grants broad execution through them. Data collection is mostly consistent with observability, yet backend process attachment, tracepoint injection, and arbitrary OTEL export destinations increase exposure. High security risk is driven primarily by the unverifiable required CLIs rather than confirmed malicious behavior.
Confidence: 82%Severity: 78%
Audit Metadata