exploring-mcp-tool-original-user-motive

Warn

Audited by Socket on Sep 4, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's purpose and capabilities mostly align for internal telemetry analysis, and the docs show unusual care around prompt-injection, privacy, and notebook-source injection. The main risk is the optional scripted path that forwards customer-authored telemetry text and an API key into external model processing; because that flow is real but disclosed, consent-gated, and not the default path, this looks like a medium-risk internal analysis skill rather than malware.

Confidence: 90%Severity: 52%
Audit Metadata
Analyzed At
Sep 4, 2026, 09:41 AM
Package URL
pkg:socket/skills-sh/posthog%2Fai-plugin%2Fexploring-mcp-tool-original-user-motive%2F@24b9323c3d3d3d805754e1ce25853716c976697d606f27c00aa2caf9af2e54b6
Security Audit — socket — exploring-mcp-tool-original-user-motive