react-guard

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is mostly aligned with its stated React review purpose, but it is not self-contained: it tells the agent to load six other skills, which introduces a meaningful transitive trust risk. Absent credential access, external installs, or suspicious network routing, this is better classified as suspicious-by-design due to skill chaining rather than malicious.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Mar 30, 2026, 02:00 PM
Package URL
pkg:socket/skills-sh/b4r7x%2Fagent-skills%2Freact-guard%2F@67f014ac00eddcf9a6439eadac600a2e8d44811b
Security Audit — socket — react-guard