figma-augment-parallel

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Likely a legitimate Figma workflow skill with mostly coherent first-party data flows, but it has medium risk due to a transitive skill-install instruction and an unverifiable 'alpha plugin zip' reference for figma-use that does not match the official install evidence provided. The core Figma MCP usage appears consistent with the stated purpose; the main concerns are expanded write capabilities and indirect trust in another skill/plugin.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Mar 24, 2026, 09:00 PM
Package URL
pkg:socket/skills-sh/AugmentedAJ%2Fskills%2Ffigma-augment-parallel%2F@018d2b40f65aa0ed817fec878bc8ef89ecf092ac