onboarding-kickoff
Warn
Audited by Socket on Mar 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s capabilities mostly match its onboarding purpose, and the known third-party destinations are consistent with official services, but the real behavior is delegated to undisclosed local scripts that likely use credentials and perform autonomous external actions. Main risks are opaque credential handling and unattended campaign/email actions rather than clear malware or overt exfiltration.
Confidence: 77%Severity: 61%
Audit Metadata