content
Warn
Audited by Socket on Aug 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: purpose is mostly coherent, but the skill uses load-time shell execution to read local files into prompt context, including accounts.md. There is no external install path, outbound network exfiltration, or credential forwarding, so this is not confirmed malware; the main issue is pre-execution trust and unnecessary local data exposure.
Confidence: 89%Severity: 56%
Audit Metadata