ai-do
Warn
Audited by Socket on May 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s main behavior is coherent with a router/orchestrator role, and it does not show credential theft or overt exfiltration. However, it materially expands trust by directing transitive installation of other skills and by ingesting remote GitHub markdown before writing prompts, so the overall risk is medium even though intent appears benign.
Confidence: 89%Severity: 67%
Audit Metadata