capability-evolver
Warn
Audited by Socket on Mar 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s self-evolution purpose matches its capabilities, but its footprint is high risk: it ingests broad prior agent content, can autonomously write/apply changes, and supports unattended continuous operation. The main issue is not obvious malware but disproportionate autonomy and prompt-injection risk from letting an agent rewrite itself based on untrusted history.
Confidence: 89%Severity: 84%
Audit Metadata