soia-dev-officecli-ops
Warn
Audited by Socket on Jul 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the Office document inspection/editing behavior is largely coherent and locally scoped, with no obvious credential harvesting or exfiltration. The main concerns are install trust and scope: a third-party skills CLI, transitive skill installation, wildcard/global agent targeting, and weakly verified publisher ownership make the delivery path riskier than the skill’s stated Office-only purpose warrants.
Confidence: 84%Severity: 58%
Audit Metadata