c-level-advisor
Audited by Socket on Jul 30, 2026
2 alerts found:
Anomalyx2SUSPICIOUS. The stated purpose and visible capabilities are mostly coherent for a CRO advisory skill, and there is no direct credential harvesting or exfiltration in the supplied text. The main concern is install/provenance: observed distribution relies on third-party registry/marketplace channels, the listed publisher identity is inconsistent, and internal protocol references widen scope beyond what is shown. Treat as medium risk until the actual repo-local Python scripts and authoritative publisher source are verified.
SUSPICIOUS: the stated executive-advisory purpose broadly matches the described orchestration and local context features, but the real trust boundary is much larger than this single file suggests. Main risk comes from transitive installation of a multi-skill GitHub repo through an external CLI with telemetry and many unseen scripts, not from confirmed malicious behavior in the shown content.