autoimplement
Warn
Audited by Socket on Aug 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s behavior is mostly aligned with its stated purpose, but it gives an AI agent broad autonomous write/commit authority and processes plan content that can steer subagents. No clear credential theft, exfiltration, or malicious install chain is present, so this is not malware; the main issue is high operational risk from autonomy plus indirect prompt-injection exposure.
Confidence: 88%Severity: 62%
Audit Metadata