exploration-mode-skill
Skill declares vague autonomous execution capabilities without specifying allowed tools or boundaries, creating significant doc-to-code verification gaps.
Why this conclusion was reached
0/4 dimensions flaggedDeclared resources and inferred behavior are broadly aligned.
No obvious high-risk egress or execution signals were found.
There is no explicit malicious chain in the report.
Dependency information is incomplete, so supply-chain confidence stays limited.
What drove the risk score up
SKILL.md does not declare any permitted tools despite claiming autonomous execution capabilities
'System cleanup' and 'self-improvement' suggest undocumented file/shell operations
Idle-time autonomous execution lacks clear user consent mechanisms or scope limits
Skill contains no implementation files to validate documentation claims
Most important evidence
Undeclared autonomous execution
Skill claims to execute tasks autonomously during 'idle time' but provides no documentation of what tools or permissions it requires to perform these operations
SKILL.md:12 Vague task scope without boundaries
'System cleanup', 'self-improvement', and 'system optimization' are ambiguous terms that could justify accessing sensitive system areas without explicit user consent
SKILL.md:17 No declared permission model
The skill makes no reference to allowed-tools or resource permission levels, making it impossible to verify if execution stays within intended boundaries
SKILL.md:1 Declared capability vs actual capability
'System cleanup' and 'self-improvement' imply file operations but none declared 'System optimization' suggests shell commands but no declaration 'Project research' and 'knowledge accumulation' may involve network access Autonomous mode switching between Collaboration and Exploration modes implies dynamic skill invocation Suspicious artifacts and egress
No obvious IOC was extracted.
Dependencies and supply chain
There are no structured dependency warnings.
File composition
SKILL.md