supreme-project-audit

Warn

Audited by Socket on May 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS due to install-trust issues, not because of overt malicious behavior. The skill’s stated purpose and capabilities are coherent for an audit assistant, but its required `ah-parser` dependency is not verifiably sourced from an official registry or publisher-controlled release channel, so the skill carries high supply-chain risk despite otherwise benign data flows.

Confidence: 84%Severity: 78%
Audit Metadata
Analyzed At
May 20, 2026, 03:42 AM
Package URL
pkg:socket/skills-sh/davccavalcante%2Fsupreme-coding-guidelines-skill.ah%2Fsupreme-project-audit%2F@02f4dcc87dd392df30944de2388e4d8394dfad5d
Security Audit — socket — supreme-project-audit