llm-monitoring-dashboard

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated monitoring purpose is coherent, but the skill’s footprint is elevated by a raw GitHub curl|bash installer for a personal-account CLI and by forwarding live LLM API keys to that externally installed tool. Local data collection, dashboards, and Slack alerts fit the use case, yet the install trust and credential-forwarding model make the skill high risk.

Confidence: 89%Severity: 84%
Audit Metadata
Analyzed At
Mar 18, 2026, 04:48 PM
Package URL
pkg:socket/skills-sh/supercent-io%2Fskills-template%2Fllm-monitoring-dashboard%2F@88df9e3f3b767ef2c189f40b41623397f6190e65