Documentation contains a destructive delete command without an explicit confirmation gate.
Warn
- Code
- suspicious.destructive_delete_command
- Location
- SKILL.md:124
Security audit
Security checks across malware telemetry and agentic risk
This skill is a disclosed local document-search/RAG integration with expected document indexing, local service setup, and removal commands.
Install only if you are comfortable granting a local RAG tool access to the document folders you configure. Prefer the pipx install path, review any curl or PowerShell installer before running it, keep OLLAMA_HOST local if documents must stay on-device, and use the documented service and deletion commands if you later want to disable it or remove indexed data.
64/64 vendors flagged this skill as clean.
Detected: suspicious.destructive_delete_command