cortex-setup
Warn
Audited by Socket on May 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's overall purpose is coherent for installing Snowflake tooling, and the dependencies appear same-vendor rather than obviously malicious. However, it reads Claude settings unnecessarily, uses mutable installer scripts and repo-clone execution, and weakens PowerShell safeguards with `ExecutionPolicy Bypass`. No clear credential-harvesting or exfiltration path is shown, but the install and execution trust model is medium risk.
Confidence: 87%Severity: 58%
Audit Metadata