run-corpus-research

Warn

Audited by Socket on May 19, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s stated purpose and direct behavior are largely coherent for research orchestration, and it shows no direct credential theft, exfiltration endpoint, or installer abuse. However, it embeds mandatory use of downstream skills/tools with unspecified provenance and relies on web-derived subagent outputs, creating transitive-trust and indirect prompt-injection risk that is disproportionate to a purely local orchestration skill unless those dependencies are separately verified.

Confidence: 84%Severity: 54%
Audit Metadata
Analyzed At
May 19, 2026, 02:38 PM
Package URL
pkg:socket/skills-sh/yigitkonur%2Fskills-by-yigitkonur%2Frun-corpus-research%2F@d8ce31c37b4449c5eb089489184d6c802890bc62
Security Audit — socket — run-corpus-research