ai-cutting-costs

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The main content is benign cost-optimization documentation, but the embedded instructions to install additional skills from a third-party personal repo are disproportionate to the stated purpose and create a transitive supply-chain risk. No direct credential harvesting or exfiltration is present, but the skill should not be treated as purely benign because it expands trust to unverified external skills.

Confidence: 91%Severity: 62%
Audit Metadata
Analyzed At
May 13, 2026, 06:47 PM
Package URL
pkg:socket/skills-sh/lebsral%2Fdspy-programming-not-prompting-lms-skills%2Fai-cutting-costs%2F@2b9e0d90ed2b5b501c85921f4aef9862d922d3a0
Security Audit — socket — ai-cutting-costs