close

Warn

Audited by Socket on Jul 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the workflow is coherent for a project-closing skill and shows no clear exfiltration or malware behavior, but it depends on an unverifiable `doctrine` CLI with no provenance or install trust information. That alone makes the skill high security risk under the required scoring rules, though evidence of malicious intent is weak.

Confidence: 83%Severity: 72%
Audit Metadata
Analyzed At
Jul 25, 2026, 01:12 PM
Package URL
pkg:socket/skills-sh/davidlee%2Fdoctrine%2Fclose%2F@77e5f9bad5c264fddf55ed7b4ab1c9d38fb18d81f2298f8e9c09bdf0b89aeb61
Security Audit — socket — close