design-good

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated purpose is coherent for a design skill, but it expands trust to multiple other skills/subagents and ingests broad untrusted external content that can influence file edits and asset generation. No clear credential theft or exfiltration is present, so the main concerns are transitive trust and indirect prompt-injection risk rather than confirmed malware.

Confidence: 81%Severity: 52%
Audit Metadata
Analyzed At
Apr 10, 2026, 07:26 AM
Package URL
pkg:socket/skills-sh/duc01226%2Feasyplatform%2Fdesign-good%2F@d9deb4e2acb0085738e9219e617c247ea1ad20b7