refresh
Fail
Audited by Snyk on Jun 17, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.70). This is a direct download of a shell installer (install.sh) from a third‑party domain (astral.sh) — piping/ running such .sh files is a high‑risk pattern because it executes remote code; verify the vendor, inspect the script, or prefer packaged installs before executing.
Issues (1)
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata