sql-query-generator
Warn
Audited by Socket on Mar 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's SQL-querying behavior is broadly aligned with its stated purpose and constrained to read-only statements, but all database access is mediated by an unverified external Kalysta MCP server. With no confirmed installer abuse or credential harvesting in the text, this is not confirmed malware; the main risk is unverifiable service provenance and third-party handling of potentially sensitive database contents.
Confidence: 82%Severity: 58%
Audit Metadata