continuous-learning

Warn

Audited by Socket on Mar 23, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The stated purpose matches the capability to learn from past sessions, and the Stop-hook setup is legitimate, but the skill persistently converts untrusted transcript content into future executable agent instructions. The main risk is prompt-injection persistence and autonomous local modification of the agent’s skill set; install provenance is only moderately trusted because distribution evidence points to a third-party registry rather than an official Anthropic channel.

Confidence: 82%Severity: 61%
Audit Metadata
Analyzed At
Mar 23, 2026, 09:05 AM
Package URL
pkg:socket/skills-sh/vibeeval%2Fvibecosystem%2Fcontinuous-learning%2F@f0c9c0210a36bed5f47b0eddcdedbda507842b11
Security Audit — socket — continuous-learning