cortex-setup

Warn

Audited by Socket on May 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's overall purpose is coherent for installing Snowflake tooling, and the dependencies appear same-vendor rather than obviously malicious. However, it reads Claude settings unnecessarily, uses mutable installer scripts and repo-clone execution, and weakens PowerShell safeguards with `ExecutionPolicy Bypass`. No clear credential-harvesting or exfiltration path is shown, but the install and execution trust model is medium risk.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
May 14, 2026, 02:40 PM
Package URL
pkg:socket/skills-sh/Snowflake-Labs%2Fsnowflake-ai-kit%2Fcortex-setup%2F@e09813de2e87d63370767740cea817785da5de86