evolve

Warn

Audited by Socket on Mar 23, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill's local file access and analysis are mostly aligned with its stated self-improvement purpose, and there is no external credential routing or download-execute chain. However, it is high-impact because it autonomously rewrites other skills and can run an unverifiable local script hook, so its control over future agent behavior is broader than a typical maintenance skill.

Confidence: 87%Severity: 68%
Audit Metadata
Analyzed At
Mar 23, 2026, 11:04 AM
Package URL
pkg:socket/skills-sh/tinh2%2Fskills-hub-registry%2Fevolve%2F@4e9dc0d655abedec18f2ffbb5d4cefe44c8fa225
Security Audit — socket — evolve