ESLint Rule Conflict Detector

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated ESLint-analysis purpose is plausible, but the artifact primarily instructs the agent to install a third-party skill, creating a transitive trust chain. No credential theft or obvious exfiltration is shown, yet the publisher/source mismatch and skill-to-skill installation make this higher risk than a normal documentation skill.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Mar 28, 2026, 06:44 PM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Feslint-rule-conflict-detector%2F@cbc5c56c8913bf9f9b894c87092d5a433a4b687e