New Research: Supply Chain Attack on Axios Pulls Malicious Dependency from npm.Details →
Socket
Book a DemoSign in
Socket

Skill: Command injection

Severity

High

Short Description

AI agent skill contains shell command execution, pipe-to-shell patterns, or download-and-execute sequences that could allow arbitrary code execution.

Suggestion

Review the skill's code and behavior carefully. Ensure the detected patterns are intentional and safe before allowing this skill to run.