continuous-learning
Warn
Audited by Socket on Mar 31, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose matches session learning, but the mechanism is high-risk because it turns untrusted transcript content into persistent skills that can influence future agent behavior. No clear credential theft or external exfiltration is present, but the automatic hook plus skill-generation workflow creates meaningful prompt-injection and persistence risk.
Confidence: 87%Severity: 72%
Audit Metadata