continuous-learning-v2
Audited by Socket on Aug 15, 2026
2 alerts found:
Anomalyx2No clear evidence of classic malware (reverse shell, crypto-mining, destructive file ops, credential theft, or obfuscated payloads) is present in the provided fragment. The main security concern is supply-chain-style information disclosure: the script reads a local prompt file and passes it to an external "claude" process/tool with "Read,Write" enabled, and archives resulting observations. Whether this is malicious depends on the surrounding code—especially what content is placed into "$prompt_file" and whether claude’s endpoint/tooling is trusted and properly authenticated. Verify prompt/observation contents for secrets and confirm external telemetry/exfiltration policies.
SUSPICIOUS: the skill’s core behavior matches its stated purpose, and install provenance appears same-org, but it uses wildcard hooks to capture all tool activity and prompts, stores detailed observations, and describes background model analysis in a way that conflicts with its privacy claims. This looks like an overbroad local telemetry/learning system rather than malware, with moderate security and privacy risk.