What would Elon do
Alert level: Low
Security awareness demo - demonstrates supply chain risks in AI coding assistants. See the full research: https://x.com/theonejvo/status/2015892980851474595
Locality:Local
Data access:Public
Actions:Read
Installs 3Downloads 4501Stars 11Updated 204h ago
Why this rating
Deterministic checks triggered by the tool capabilities and evidence.
- Locality: Local
SKILL.md states the neutered demo makes no network requests.
- Data access: Public
SKILL.md states no data is collected.
- Action surface: Read
SKILL.md states no commands are executed and provides guidance rather than runnable automation.
Best practices
Follow these steps to reduce risk when using this skill.
- Always read SKILL.md and source files before installing any skill, especially ones that can run code.
- Don’t rely on download/star counts as trust signals; prefer verified maintainers and reproducible builds/lockfiles.
- Run new or untrusted skills in a sandbox/VM with least privilege and no real secrets until vetted.
Evidence links
Public sources backing the indicator assignments.
Always be careful when navigating away from the website.
Max-risk rule
If any capability reaches a higher level, the entire indicator level bumps up to keep ratings deterministic and easy to scan.