The documented Portal URL and Markdown command references do not independently indicate unsafe network access or shell execution. However, the skill requires two unscanned shared setup documents; publication should include a review of those dependencies before users follow their instructions.
The skill requires reading two shared documents outside its package before running commands. Those documents were not among the audited files, so their instructions cannot be evaluated in this report.
The mandatory dependency is explicit, while only SKILL.md and the CLI reference were scanned. External instructions can affect command execution and should be reviewed with this skill.
The hardcoded URL findings are benign documentation for the intended AltLLM Portal API endpoint. The external command findings are false positives from Markdown inline code, but the sibling `../_shared` references are confirmed boundary-crossing filesystem risks. No prompt injection attempt or hidden exfiltration intent was found in the reviewed files.
2
Files scanned
125
Lines analyzed
5
Review items
0
False positives ignored
Capability review items (2)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
The skill instructs the agent to read another sibling path outside the skill directory. This crosses the marketplace package boundary and should fail closed.