Security audit
Skillet Release Cut
Security checks for vulnerabilities and agentic risk
Overview
PRECC is a disclosed Claude Code helper that installs local command-correction hooks, with no artifact-backed malicious behavior found.
Install only if you are comfortable letting PRECC add Claude Code hooks that inspect and sometimes rewrite Bash commands, store local learning data, and optionally index or compress project/context files. Review the installer and release source before using the curl-to-bash install path, and leave telemetry disabled unless you explicitly want it.
Vulnerability Patterns
- Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
- Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
- Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
- Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
- Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep
Static analysis
No suspicious patterns detected.
