threat-modeling
Fail
Audited by Snyk on Jul 9, 2026
Risk Level: CRITICAL
Full Analysis
CRITICAL E005: Suspicious download URL detected in skill instructions.
- Suspicious download URL detected (high risk: 0.80). The TomeVault links point to an unfamiliar third‑party distribution/install endpoint (claim/install/relay) that could deliver executables from an untrusted source, while the GitHub and OWASP links are official and were not flagged.
Issues (1)
E005
CRITICALSuspicious download URL detected in skill instructions.
Audit Metadata