lov-hanzi-lens
Warn
Audited by Socket on Aug 24, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s stated purpose and local rendering workflow are mostly coherent, and there is no clear exfiltration or remote execution path in the provided text. However, the mandatory unverified dependency on another skill materially increases trust and supply-chain risk, making the overall footprint higher-risk than a standalone documentation/rendering skill.
Confidence: 84%Severity: 74%
Audit Metadata