last30days

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent, and the API endpoints are broadly aligned with research tasks, but the skill’s core execution relies on an unverifiable community script that receives user input and potentially API keys. That makes install/execution trust and credential forwarding disproportionate to a safe skill, even without evidence of confirmed malicious exfiltration.

Confidence: 87%Severity: 84%
Audit Metadata
Analyzed At
Apr 14, 2026, 07:40 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Flast30days%2F@7b6940fe927f8d4896db24351c1d531ec730343d