implement-spec
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core purpose and local file access are coherent for a spec-implementation skill, and there is no direct exfiltration or credential harvesting. The main concern is the unpinned transitive invocation of create-plan plus autonomous subagent execution and repo-defined command execution, which makes the trust boundary ambiguous enough to rate as suspicious rather than benign.
Confidence: 84%Severity: 56%
Audit Metadata