identity-graph-operator
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileThe Identity Graph Operator skill appears well-aligned with its declared purpose: managing a shared identity resolution layer with deterministic outcomes, evidence-based decisions, and auditability. The footprint is proportionate, with no evident credential requirements or untrusted download/install behavior. While the conceptual design emphasizes PII handling and tenant isolation, explicit runtime safeguards (e.g., access control policies, immutable audit logs, encrypted storage, and per-tenant data separation) are not exhaustively detailed in the material. Overall, the risk posture is benign-to-low, with some considerations around data privacy controls and audit integrity that should be addressed in implementation.