mlx-brain

Warn

Audited by Socket on May 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s purpose broadly matches local/remote MLX inference, but its footprint includes remote command execution and an unversioned local workspace script with weak install provenance. No clear credential harvesting or exfiltration is shown, so this is not malicious, but it carries medium risk due to command execution trust and opaque local dependencies.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 12, 2026, 08:05 AM
Package URL
pkg:socket/skills-sh/kjaylee%2Fmisskim-skills%2Fmlx-brain%2F@4057799cd40da7a7f095a005429ce60c1bd13f75