dossier-collect
Warn
Audited by Socket on Jun 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's purpose broadly matches its capabilities, but it is overpowered for research because it combines recursive ingestion of untrusted web content with Bash, file writes, and persistent memory tools. No direct credential harvesting, remote installer, or confirmed malicious payload is present, but the prompt-injection and broad-action surface make it medium-high risk.
Confidence: 100%Severity: 60%
Audit Metadata