Missing User Warnings
Medium
- Confidence
- 95% confidence
- Finding
- The skill recommends executing remote content directly with `curl ... | sh` and does so multiple times without any inline warning, checksum/signature verification steps visible in the skill, or instruction to inspect the script first. This creates a direct remote-code-execution path during installation: if the hosting domain, redirect path, GitHub content, or transport trust is compromised, the user will run attacker-controlled shell commands locally.
