linkfox-walmart-wmtwin
Warn
Audited by Socket on May 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s behavior is broadly consistent with its stated purpose, and network flows appear to target official WMTwin infrastructure rather than a credential-harvesting proxy. However, it asks the agent to handle highly sensitive credentials and one-time codes, then stores reusable authenticated session material in /tmp, which makes the overall risk medium even without clear malicious intent.
Confidence: 82%Severity: 58%
Audit Metadata