supermemory-status

Warn

Audited by Socket on Jul 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The stated purpose is coherent, but the skill's core action is to run an unverifiable local script from the user's home directory and sometimes request escalated shell access to read credential state. There is no explicit exfiltration in the skill text, yet the trust model is weak enough that the overall risk is high even without confirmed malware.

Confidence: 82%Severity: 74%
Audit Metadata
Analyzed At
Jul 28, 2026, 03:27 AM
Package URL
pkg:socket/skills-sh/supermemoryai%2Fcodex-supermemory%2Fsupermemory-status%2F@f52cb80425fec76c505e4d72c7071330e5f6c31946fdabe029b801da6d6d092a
Security Audit — socket — supermemory-status