ai-summarizing

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core summarization guidance is benign and proportionate, but the skill unnecessarily instructs installation of additional third-party skills via `npx skills add`, creating supply-chain and transitive-trust risk unrelated to summarization itself. No direct credential theft, exploit code, or covert exfiltration is present.

Confidence: 91%Severity: 68%
Audit Metadata
Analyzed At
May 13, 2026, 06:48 PM
Package URL
pkg:socket/skills-sh/lebsral%2Fdspy-programming-not-prompting-lms-skills%2Fai-summarizing%2F@54df51e94f2f7e948749406459dd7a43c6ae73d9