mega-mind

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s core purpose as an orchestrator is coherent, and there is no direct evidence of credential theft, malware, or hostile exfiltration. Risk comes from broad transitive control over many other skills, vague 'install if missing' guidance, and encouragement of autonomous multi-step workflows that expand the agent’s effective footprint beyond a narrowly scoped router.

Confidence: 80%Severity: 61%
Audit Metadata
Analyzed At
Apr 7, 2026, 04:26 PM
Package URL
pkg:socket/skills-sh/k1lgor%2Fmega-mind-skills%2Fmega-mind%2F@a5af0f4f89d1eff67ac9972ad0a9340e3e228c14
Security Audit — socket — mega-mind