stitch-mcp-create-design-system-from-design-md
Warn
Audited by Socket on Jul 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill’s behavior is internally consistent and narrowly scoped for Stitch design-system creation, with no direct exfiltration or malicious instructions in the markdown. Risk is driven by dependency on an external Stitch MCP setup whose most visible CLI appears to be third-party/personal-account maintained and capable of receiving credentials, making trust and credential-forwarding concerns moderate even though the skill text itself looks proportionate.
Confidence: 82%Severity: 56%
Audit Metadata