ESLint Rule Enforcement Agent

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is coherent for an ESLint skill, but the primary risk is the installation method telling the agent to fetch a transitive skill from an unverified third-party repository. There is no clear evidence of credential theft or malicious data routing in the provided text, but the trust chain is weak enough to treat this as medium/high supply-chain risk.

Confidence: 87%Severity: 74%
Audit Metadata
Analyzed At
Mar 28, 2026, 06:45 PM
Package URL
pkg:socket/skills-sh/agentskillexchange%2Fskills%2Feslint-rule-enforcement-agent%2F@cf286511d00e0d8cb1dc63514f3b1b4ae0b4b1a2