dream
Warn
Audited by Socket on Apr 11, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose broadly matches cross-repo analysis, but the skill has wide visibility across repos, memory, and system state and relies on ambiguous/transitive dependencies, especially Oracle MCP, `/dig`, and `/trace`, whose provenance is not established here. No clear credential theft or covert exfiltration is shown, but install trust and data-flow boundaries are insufficiently defined for a benign classification.
Confidence: 81%Severity: 64%
Audit Metadata