seeking-skills

Warn

Audited by Socket on Apr 9, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's purpose is plausible, but its main capability is to discover and install other GitHub-hosted skills without clear provenance or verification. The core risk is transitive skill installation and loading untrusted external instructions into the agent.

Confidence: 90%Severity: 79%
Audit Metadata
Analyzed At
Apr 9, 2026, 06:42 PM
Package URL
pkg:socket/skills-sh/mmmantasrrr%2Fskill-seeker%2Fseeking-skills%2F@2f4ee59b13c1c769051fdcd502f6b8859e8ff35f
Security Audit — socket — seeking-skills