update-config

Warn

Audited by Socket on Apr 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's purpose mostly matches its behavior, but it performs unpinned remote code execution from a GitHub raw URL and instructs the agent to proceed without confirmation. This is primarily a supply-chain and autonomous execution risk rather than confirmed malware.

Confidence: 84%Severity: 78%
Audit Metadata
Analyzed At
Apr 28, 2026, 06:05 AM
Package URL
pkg:socket/skills-sh/mizoreww%2Fawesome-claude-code-config%2Fupdate-config%2F@9427451eb3551ac293fcfde8d39a96fe961210c9