ESLint Auto-Fix Agent
Warn
Audited by Socket on Mar 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is benign and consistent with ESLint usage, but the actual install path relies on a third-party transitive skill installer and an unverified publisher relationship. No clear credential harvesting or malicious data flow is shown, but the install/execution trust is not strong enough for a benign classification.
Confidence: 84%Severity: 72%
Audit Metadata