tooluniverse-claude-code-plugin

Warn

Audited by Socket on Aug 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s actions mostly match its stated plugin-install purpose, but it expands trust substantially: it installs a third-party Claude plugin from GitHub, enables optional background auto-updates, and runs a separate PyPI package via uvx that can receive API keys. The install sources are legitimate and publisher-consistent, so this is not confirmed malware, but the transitive trust and credential-forwarding footprint are higher-risk than a simple documentation skill.

Confidence: 87%Severity: 64%
Audit Metadata
Analyzed At
Aug 7, 2026, 03:52 PM
Package URL
pkg:socket/skills-sh/mims-harvard%2Ftooluniverse%2Ftooluniverse-claude-code-plugin%2F@63fddd802f7e9ee30a200235580523729a1f273146f52ffdec312a540667d77a
Security Audit — socket — tooluniverse-claude-code-plugin