use-ryvn

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s core behavior is coherent with operating Ryvn infrastructure and its data flows appear to target Ryvn-owned services, but risk is elevated by broad shell permissions, high-impact autonomous infrastructure actions, automatic outbound feedback submission, and only partially verified CLI install provenance.

Confidence: 85%Severity: 62%
Audit Metadata
Analyzed At
Apr 7, 2026, 04:51 PM
Package URL
pkg:socket/skills-sh/ryvn-technologies%2Fskills%2Fuse-ryvn%2F@6c6b3000966be0d2c209d042bf02ee9ccb7d1eeb