use-skill
Audited by Socket on Sep 17, 2026
2 alerts found:
SecurityAnomalySUSPICIOUS: the skill’s purpose is inherently to fetch and execute untrusted third-party skills, which creates substantial prompt-injection and transitive-trust risk even though it uses official domains, SHA pinning, and explicit safety guardrails. It is not confirmed malware, but its actual footprint meaningfully expands the agent’s trust boundary beyond a normal utility skill.
The supplied fragment is documentation for a remote skill installation mechanism, not evidence of malware in the fragment itself. Executing the documented npx command would create a material supply-chain risk because it downloads and may execute mutable remote code. Review and pin the package and repository contents before execution.