moltlang
PassAudited by VirusTotal on May 12, 2026.
Findings (1)
The skill is classified as suspicious due to its reliance on remote fetches for installation, which introduces a supply chain risk. Both SKILL.md and README.md contain instructions for the AI agent to execute `git clone` and `curl` commands to download files from `https://github.com/eduarddriessen1/moltlang`. While these commands are intended for legitimate installation of the skill's own components, they represent a risky capability as they fetch content from an external, mutable source, making the skill vulnerable to supply chain attacks if the remote repository were compromised.
