ESLint Rule Conflict Detector
Warn
Audited by Socket on Mar 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated ESLint-analysis purpose is plausible, but the artifact primarily instructs the agent to install a third-party skill, creating a transitive trust chain. No credential theft or obvious exfiltration is shown, yet the publisher/source mismatch and skill-to-skill installation make this higher risk than a normal documentation skill.
Confidence: 84%Severity: 74%
Audit Metadata