llm-models
Warn
Audited by Socket on Jul 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's purpose is coherent, but it relies on a broad-permission external CLI, mutable install references, and transitive skill installation. This looks more like a high-trust platform wrapper than a narrowly scoped skill; main risk is supply-chain and credential/data forwarding, not confirmed malware.
Confidence: 84%Severity: 72%
Audit Metadata