software-copyright-materials

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s stated purpose and capabilities are mostly aligned and strongly user-gated, with no clear credential theft or covert exfiltration. However, it depends on a bundled DOCX toolkit whose provenance is not publicly verifiable from the provided evidence, creating a mandatory high supply-chain risk for this skill.

Confidence: 84%Severity: 74%
Audit Metadata
Analyzed At
Apr 29, 2026, 12:27 PM
Package URL
pkg:socket/skills-sh/Fokkyp%2FSoftwareCopyright-Skill%2Fsoftware-copyright-materials%2F@67c814a982a7c4b2330302b5e38609f4b40297bb