ai-paper-reproduction
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The stated purpose is coherent for AI repo reproduction, and there is no explicit credential harvesting or malicious endpoint. However, the skill delegates to unverifiable sub-skills, may execute commands from untrusted repositories, and combines external-content intake with write/exec capability, creating medium security risk despite limited direct evidence of malware.
Confidence: 83%Severity: 62%
Audit Metadata