ovphysx-host-runtime-boundary
Warn
Audited by Socket on Jul 22, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's host-Blender execution model fits its stated OVPhysX purpose, and there is no explicit credential harvesting or off-host exfiltration. However, its core function depends on executing an unverifiable local helper script from a user-home path and on companion-skill trust not included in the evidence, so the install/execution trust is too weak to rate benign.
Confidence: 80%Severity: 72%
Audit Metadata