experiment-bridge

Warn

Audited by Socket on Apr 19, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s capabilities broadly fit an experiment orchestration purpose, but its footprint is large: wildcard bash, autonomous GPU actions, unpinned arbitrary repo cloning, and outbound code review to an external model service. The main issue is high operational and supply-chain risk rather than confirmed malicious intent.

Confidence: 87%Severity: 76%
Audit Metadata
Analyzed At
Apr 19, 2026, 03:15 AM
Package URL
pkg:socket/skills-sh/Shaun-Z%2FAuto-claude-code-research-in-sleep%2Fexperiment-bridge%2F@f3e4b5f91708864f96c8eab46e83c7463b3787ed