design-html
Warn
Audited by Socket on May 16, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the core HTML-generation purpose is plausible, but the skill's actual footprint is much broader than design finalization. Same-org gstack tooling reduces concerns about outright malware, yet opaque local binaries, telemetry/artifact sync, git automation, CLAUDE.md modification, and transitive skill routing make the scope disproportionate and increase security risk.
Confidence: 83%Severity: 66%
Audit Metadata