cursor-plugin-headroom
Warn
Audited by Socket on Aug 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally coherent for a Headroom integration, and the recommended install path appears to be the project's official PyPI package. However, its whole function is to auto-start a third-party local proxy that intermediates later API traffic, so the main risk is data-flow interception and trust in that external runtime rather than obvious malware in the skill itself.
Confidence: 82%Severity: 58%
Audit Metadata