adaptive-suite
PassAudited by VirusTotal on May 14, 2026.
Findings (1)
The skill bundle is classified as suspicious due to its broad capabilities and instructions that, while described with benign intent, carry significant inherent risks. Specifically, the `SKILL.md` file requires access to `python`, `node`, `curl`, and `sqlite3` binaries, granting extensive scripting, network, and local database capabilities. It also explicitly requires the `FREE_API_KEYS` environment variable, indicating access to specific user data. Most notably, the 'NAS Metadata Scraper' instruction directs the agent to 'Compile a localized desktop app that scans NAS directories' and collect metadata, implying significant local execution and broad file system interaction, even with the 'read-only' constraint.
