wsl-containers
Audited by Socket on Sep 3, 2026
1 alert found:
SecurityThis fragment describes a remote-to-local import pipeline that enumerates and downloads repository files over HTTPS and writes them into a user-local Hermes skills import directory under `AppData/Local`. While the content type is described as `SKILL.md`, the workflow has supply-chain/content-injection characteristics and explicitly aims to bypass Windows Defender/policy restrictions. No code is provided, so path sanitization, integrity/authentication controls, and whether imported artifacts can execute or cause harm cannot be verified; nonetheless, the combination of untrusted remote content ingestion into an application import area and evasion-oriented framing warrants security review and stronger controls (allowlists, commit/hash pinning, signature verification, and strict path/content validation).