ljg-library
Warn
Audited by Socket on Jul 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The overall capability is coherent with a book-to-card media skill, but it forwards credentials to remote services, depends on custom local scripts/other skills, and uses partially unverifiable API gateway flows. No clear malware or exfiltration beyond the stated function, but the trust chain and credential forwarding make it medium risk.
Confidence: 80%Severity: 58%
Audit Metadata