siem-rule-generator
Warn
Audited by Socket on May 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is not overtly malicious and shows no credential theft, exfiltration, or supply-chain abuse, but its scope is vague and broader than its stated SIEM-rule purpose. Broad local permissions, especially Bash, combined with security/pentesting framing make the footprint disproportionate for a simple rule-generation helper.
Confidence: 84%Severity: 57%
Audit Metadata