cortex-code

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core Snowflake-routing purpose is plausible and the Cortex CLI appears to be an official Snowflake tool, so this is not confirmed malware. However, the skill broadens scope by reading local session history, forwarding enriched context to an external agentic CLI, and enabling auto-approved tool execution with a full-access DEPLOY mode that is disproportionate for a Snowflake helper.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Apr 8, 2026, 07:42 PM
Package URL
pkg:socket/skills-sh/sfc-gh-tjia%2Fclaude_skill_cortexcode%2Fcortex-code%2F@01ede127ec10eea7741e67e0a98374639c6292c2