reflect

Warn

Audited by Socket on Aug 30, 2026

1 alert found:

Security
SecurityMEDIUM
references/judgment-reviewer.md

The provided fragment is a prompt-engineering style input that elevates process-level risk rather than exposing tangible code vulnerabilities. It signals potential data leakage through transcript propagation into external tooling and dashboards if not properly sandboxed. A secure approach requires strict input sanitization, minimal transcript exposure, and clear boundaries for MCP interactions to prevent inadvertent leakage of untrusted content or internal context.

Confidence: 54%Severity: 70%
Audit Metadata
Analyzed At
Aug 30, 2026, 06:23 PM
Package URL
pkg:socket/skills-sh/andabove%2Fskills%2Freflect%2F@8eae966c0ba1a9e859bed3c800177e46aa24ad06cc62ee8b63dc10e9d5b68729
Security Audit — socket — reflect