ocr-recognition
Warn
Audited by Socket on Mar 23, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill’s capabilities are largely consistent with OCR, and no credential harvesting or off-purpose data routing is shown. However, the Docker fallback depends on an unpinned third-party image from Docker Hub rather than an official same-org Tesseract source, making the install path meaningfully risky even though overall behavior remains coherent with the stated purpose.
Confidence: 90%Severity: 56%
Audit Metadata