Back to skill

Security audit

Skillet Release Cut

Security checks for vulnerabilities and agentic risk

Overview

PRECC is a disclosed Claude Code helper that installs local command-correction hooks, with no artifact-backed malicious behavior found.

Install only if you are comfortable letting PRECC add Claude Code hooks that inspect and sometimes rewrite Bash commands, store local learning data, and optionally index or compress project/context files. Review the installer and release source before using the curl-to-bash install path, and leave telemetry disabled unless you explicitly want it.

Vulnerability Patterns
  • Prompt InjectionInstruction Override, Hidden Instructions, Exfiltration Commands
  • Data ExfiltrationExternal Transmission, Env Variable Harvesting, File System Enumeration
  • Privilege EscalationExcessive Permissions, Sudo/Root Execution, Credential Access
  • Supply ChainUnpinned Dependencies, External Script Fetching, Obfuscated Code
  • Excessive AgencyUnrestricted Tool Access, Autonomous Decision Making, Scope Creep

Static analysis

No suspicious patterns detected.