feature-dev-complete

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill’s broad capabilities mostly match its stated purpose, but it carries medium-high risk because it combines untrusted web intake, autonomous code generation, unpinned `npx` execution, repo writes, and default PR creation. The main concern is unsafe orchestration and trust expansion rather than clearly malicious intent.

Confidence: 83%Severity: 74%
Audit Metadata
Analyzed At
Apr 2, 2026, 07:19 AM
Package URL
pkg:socket/skills-sh/dnyoussef%2Fai-chrome-extension%2Ffeature-dev-complete%2F@836c543dd043110f85093bf28d4d17bc65dfd9d8