swift-development

Warn

Audited by Socket on Sep 5, 2026

1 alert found:

Security
SecurityMEDIUM
skill-report.json

Overall, the package is a legitimate developer tooling/guidance bundle, but it contains high-impact operational hazards. The most significant risk is destructive `rm -rf` guidance that targets broad `~/Library/...` development/cache directories, which can lead to substantial local data loss if executed or copy-pasted without strict review. It also includes `sudo`-based developer environment control guidance and an `xargs` CI fan-out pattern that can mis-handle unusual filenames. There is no clear evidence of stealth malware or exfiltration in the provided excerpt; the primary concern is execution safety, privilege handling, and destructive command usage.

Confidence: 60%Severity: 78%
Audit Metadata
Analyzed At
Sep 5, 2026, 05:23 PM
Package URL
pkg:socket/skills-sh/aiskillstore%2Fmarketplace%2Fswift-development%2F@1cb7daa6fce96953bbd1cfea8bbd1e60345ed75f7166e74b061200edf66083e0
Security Audit — socket — swift-development