bootstrap
Warn
Audited by Socket on Apr 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is coherent, but the skill grants an AI agent broad authority to clone arbitrary repos, run repo-native installs, and execute health checks influenced by untrusted external content. Install sources are mostly legitimate and there is no clear credential harvesting or exfiltration path, but the combination of arbitrary-repo bootstrap, tool installation, and command execution creates medium-high operational risk for an agent skill.
Confidence: 86%Severity: 72%
Audit Metadata