fal-realtime
Warn
Audited by Socket on May 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stub's stated purpose is plausible, but it is mostly a pointer that asks the agent to trust and install an upstream skill bundle, creating a transitive trust chain. The referenced publisher relationship appears legitimate, so this is not confirmed malware; risk comes from offloading execution to upstream assets and a likely remote-script CLI installer rather than from direct malicious behavior in this file.
Confidence: 84%Severity: 56%
Audit Metadata