jake-tools
Warn
Audited by Socket on Jul 24, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s functions broadly match its stated purpose, but the trust model is weak because the primary CLI is an editable, currently unverifiable checkout that receives Graph-authenticated access and likely sensitive local content. The biggest issue is supply-chain and credential-forwarding risk, not confirmed malware.
Confidence: 84%Severity: 83%
Audit Metadata