exploring-mcp-tool-original-user-motive
Warn
Audited by Socket on Sep 4, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's purpose and capabilities mostly align for internal telemetry analysis, and the docs show unusual care around prompt-injection, privacy, and notebook-source injection. The main risk is the optional scripted path that forwards customer-authored telemetry text and an API key into external model processing; because that flow is real but disclosed, consent-gated, and not the default path, this looks like a medium-risk internal analysis skill rather than malware.
Confidence: 90%Severity: 52%
Audit Metadata