Shell command execution detected (child_process).
Critical
- Code
- suspicious.dangerous_exec
- Location
- scripts/request.js:74
Security audit
Security checks across malware telemetry and agentic risk
This skill is a narrow wrapper for retrieving Fitbit and training data through an existing local connector, with no evidence of hidden writes, persistence, or exfiltration.
Install only if you intend the agent to access your local Fitbit connector and training context. Treat the returned health and sleep data as sensitive, and verify that the referenced local backend is one you trust.
66/66 vendors flagged this skill as clean.
Detected: suspicious.dangerous_exec