A curated, auto-synced collection of agent skills (design, animation, dev workflow) with a CLI to install them into any harness: Claude Code, OpenCode, Cursor, Codex, Gemini.
No attack surface was identified. Package behavior is activated by explicit command-line use, not installation or import.
The AI recommended clean. Static policy retained a warning. The static scanner classified the package as malicious with confidence of at least 85%. A critical static finding has confidence of at least 90%. These conditions do not mean that the AI confirmed malicious behavior.
Package defines install-time lifecycle scripts.
package.jsonView on unpkgInstall-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkgPackage source references dynamic require/import behavior.
skills/ui/impeccable/scripts/live-browser.jsView on unpkg · L5280Source creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
bin/skillset.mjsView on unpkg · L13Runtime or CLI source writes behavior-bearing configuration into a user or project AI-agent control surface.
bin/skillset.mjsPackage ships non-JavaScript build or shell helper files.
scripts/ste-lint.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
skills/ui/impeccable/scripts/modern-screenshot.umd.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/sync.mjsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
scripts/sync.mjsView on unpkgThis report applies to @nerdev/skillset@0.2.6.
See version security history for other recorded verdicts.
Evidence last updated: .
Manifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
bin/skillset.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/skillset.mjsView on unpkgPackage defines install-time lifecycle scripts.
package.jsonView on unpkg · L20Install-time lifecycle script is not statically allowlisted and needs review.
package.jsonView on unpkg · L20Package source references dynamic require/import behavior.
skills/ui/impeccable/scripts/live-browser.jsView on unpkg · L5280Package ships non-JavaScript build or shell helper files.
scripts/ste-lint.pyView on unpkgA bounded semantic-analysis stage reached its safety limit; remaining detectors completed, but this package requires AI review.
skills/ui/impeccable/scripts/modern-screenshot.umd.js#virtual:normalized:round1View on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
scripts/sync.mjsView on unpkgSource fingerprint signature matches a known malicious package signature; route for source-aware review.
scripts/sync.mjsView on unpkgSource creates an unconsented AI-agent control surface through install-time mutation or a default unauthenticated remote skill channel.
bin/skillset.mjsView on unpkg · L13Runtime or CLI source writes behavior-bearing configuration into a user or project AI-agent control surface.
bin/skillset.mjsView on unpkgManifest-trigger-reachable source writes behavior-bearing configuration into a user or project AI-agent control surface.
bin/skillset.mjsView on unpkgSource file is highly similar to a previously finalized malicious package; route for source-aware review.
bin/skillset.mjsView on unpkg