save-context

Warn

Audited by Socket on Mar 23, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core snapshot-writing behavior is coherent, but the skill exceeds that purpose by autonomously committing and pushing saved conversation context to an arbitrary preconfigured git remote. Main risk is unintended disclosure of conversation/project details rather than malware or supply-chain abuse.

Confidence: 91%Severity: 72%
Audit Metadata
Analyzed At
Mar 23, 2026, 11:04 AM
Package URL
pkg:socket/skills-sh/tinh2%2Fskills-hub-registry%2Fsave-context%2F@61956157f19eecba761e9408ff6a5c9dc0cdc5b4
Security Audit — socket — save-context