mega-code-skill-enhance

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s core behavior matches its stated purpose, but it evaluates potentially untrusted skill prompts, reads local auth material, performs substantial file modifications, and can upload artifacts to an unspecified remote server. The main concern is prompt-injection and remote data-flow risk rather than confirmed malware.

Confidence: 81%Severity: 68%
Audit Metadata
Analyzed At
Apr 10, 2026, 04:12 AM
Package URL
pkg:socket/skills-sh/wisdomgraph%2Fmega-code%2Fmega-code-skill-enhance%2F@453f929eb17faed032611737398191a472c94188