@jaypie/tildeskill
Provides a storage abstraction for skill documents with markdown support, enabling easy management and retrieval of skills for AI assistants.
Install this skill
or
90/100
Security score
The @jaypie/tildeskill skill was audited on May 14, 2026 and we found 2 security issues across 2 threat categories. Review the findings below before installing.
Categories Tested
Security Issues
medium line 68
Template literal with variable interpolation in command context
SourceSKILL.md
| 68 | skills.forEach(s => console.log(`${s.alias}: ${s.description}`)); |
medium line 173
Path traversal to sensitive directory
SourceSKILL.md
| 173 | isValidAlias("../../etc"); // false (path traversal) |
Scanned on May 14, 2026
View Security Dashboard