sparc-methodology
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is largely coherent with its stated purpose as a development-orchestration methodology, and its install path appears to use a real npm package rather than a covert binary. However, it grants broad agentic capabilities, mixes untrusted web research with write/exec-capable workflows, and encourages automation through external tooling and alpha releases, making it higher-risk than a passive documentation skill.
Confidence: 82%Severity: 61%
Audit Metadata