ESLint Code Review

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The stated ESLint review purpose is benign, but this artifact mainly instructs the agent to install another skill from a third-party repository through an unpinned CLI, which creates a medium-to-high transitive trust risk. No direct malware or credential-theft behavior is shown in the provided content.

Confidence: 86%Severity: 68%
Audit Metadata
Analyzed At
Mar 28, 2026, 06:43 PM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Feslint-code-review%2F@cf679d48e52b3143b15723bd994960faa86eed37