d2-architect
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s purpose and local file access are coherent with codebase diagram generation, and there is no direct evidence of credential theft or exfiltration. However, it runs an unseen dependency installer from a cached plugin path, so install provenance is not verifiable from the skill content; that unresolved supply-chain risk drives the classification.
Confidence: 84%Severity: 72%
Audit Metadata