larrybrain
Warn
Audited by Socket on Jul 11, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's stated purpose matches its behavior, but that purpose is inherently high-risk because it installs and activates remote third-party skills. Official LarryBrain API usage is internally consistent, yet the transitive trust chain, remote instruction-following, and mutable distribution evidence make this a risky marketplace/bootstrapper rather than a benign low-risk guide.
Confidence: 88%Severity: 78%
Audit Metadata