command-development
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose is instructional, but the skill contains literal pre-execution directives that will run commands when the skill is loaded. Although I found no confirmed credential theft, remote-code fetch, or exfiltration, executing git/npm/gh/node/bash and plugin-local scripts in a documentation skill is internally inconsistent and creates high pre-execution risk.
Confidence: 94%Severity: 86%
Audit Metadata