dino-sync
Warn
Audited by Socket on Jul 13, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated sync purpose is coherent, but the core executable (`dino`) is not verifiably official from the provided evidence. Because the skill depends on an unverifiable CLI and may forward auth tokens and local data to it, this is a high security-risk skill even though there is not enough evidence to call it confirmed malware.
Confidence: 84%Severity: 82%
Audit Metadata