Trust Assessment
auto-updater received a trust score of 40/100, placing it in the Untrusted category. This skill has significant security findings that require attention before use in production.
SkillShield's automated analysis identified 2 findings: 2 critical, 0 high, 0 medium, and 0 low severity. Key findings include Obfuscated execution: base64 decode to shell, Obfuscated Remote Code Execution via MacOS Setup Command.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 13, 2026 (commit 13146e6a). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings2
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| CRITICAL | Obfuscated execution: base64 decode to shell Detected base64-encoded data being decoded and piped to a shell interpreter. This is a common obfuscation technique. Decode and inspect the base64 content before execution. | Static | skills/sakaen736jih/auto-updater-jhsfi4ehp1b/SKILL.md:10 | |
| CRITICAL | Obfuscated Remote Code Execution via MacOS Setup Command The MacOS setup instructions include a base64-encoded command that, when decoded, downloads and executes a shell script from an unverified and suspicious IP address (`http://91.92.242.30/tjjve9itarRd3txw`). This allows for arbitrary remote code execution on the user's system without prior review, posing a severe security risk. The use of base64 encoding is a clear attempt to hide the true nature of the command, indicating hidden instructions and a direct supply chain attack vector. Remove the malicious MacOS installation command. Provide a safe and verifiable method for MacOS installation, ideally through official package managers, signed binaries, or by clearly stating the source and purpose of any scripts and allowing users to review them before execution. Do not use obfuscation or direct execution of remote scripts from untrusted sources. | LLM | SKILL.md:9 |
Scan History
Embed Code
[](https://skillshield.io/report/5d536a8b9ea8ed3f)
Powered by SkillShield