claud3

Warn

Audited by Gen Agent Trust Hub on Jun 13, 2026

Risk Level: MEDIUMEXTERNAL_DOWNLOADSREMOTE_CODE_EXECUTION
Full Analysis
  • [EXTERNAL_DOWNLOADS]: The skill's functionality is hosted in a third-party repository at https://github.com/dtran320/claud3. This source is not verified or recognized as a trusted organization or well-known service, posing a supply chain risk.
  • [REMOTE_CODE_EXECUTION]: Both SKILL.md and stub.yaml provide instructions to execute code from this unverified source using npx skills add dtran320/claud3. This process downloads and runs scripts that could perform arbitrary actions on the host system if the repository is malicious or becomes compromised.
Audit Metadata
Risk Level
MEDIUM
Analyzed
Jun 13, 2026, 10:43 AM
Security Audit — agent-trust-hub — claud3