docs-update-expert
Warn
Audited by Socket on Aug 7, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The core documentation-update behavior is coherent and there is no direct credential harvesting, secret-file access, or obvious exfiltration. The main risk is transitive trust: this skill explicitly asks to install additional skills and relies on external-doc retrieval while retaining file-editing capability, which raises medium risk even though the stated purpose is legitimate.
Confidence: 85%Severity: 58%
Audit Metadata