grant-proposal
Warn
Audited by Socket on May 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core grant-writing purpose is coherent, but the footprint is broader than necessary: wildcard Bash, transitive sub-skill execution, external-content ingestion with write/exec capabilities, and one explicit stealth instruction. The referenced installer appears same-org rather than overtly malicious, so this is not confirmed malware, but it carries meaningful operational and supply-chain risk for an AI agent skill.
Confidence: 87%Severity: 64%
Audit Metadata