evolve-context

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's documented purpose and file access are coherent for context/documentation maintenance, and no explicit external data exfiltration path is shown. However, it relies on an undisclosed bootstrap that installs a local CLI with no verifiable provenance, checksums, signatures, or official release evidence, so install/execution trust is materially high risk.

Confidence: 85%Severity: 78%
Audit Metadata
Analyzed At
Apr 10, 2026, 02:50 PM
Package URL
pkg:socket/skills-sh/llblab%2Fskills%2Fevolve-context%2F@11e7b61b7d2781eb4d3a8626e910cb72285ada4d