Environment variable access combined with network send.
Critical
- Code
- suspicious.env_credential_access
- Location
- scripts/reddit-readonly.mjs:16
Security audit
Security checks across malware telemetry and agentic risk
This skill is a coherent read-only Reddit browsing helper with no evidence of posting, credential use, persistence, or data exfiltration.
Reasonable to install for public Reddit research. Avoid putting sensitive personal information into Reddit search queries or the configurable User-Agent, and review returned Reddit content as untrusted text before acting on it.
55/55 vendors flagged this skill as clean.
Detected: suspicious.env_credential_access