plan-tune

Warn

Audited by Socket on May 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose is modest, but the skill carries a large shared control plane: opaque local executables, telemetry, artifact sync, repo mutation, and commit-capable setup flows. This is not confirmed malware, but it is internally disproportionate for a profile/question-tuning skill and should be treated as high security risk.

Confidence: 84%Severity: 82%
Audit Metadata
Analyzed At
May 16, 2026, 06:26 PM
Package URL
pkg:socket/skills-sh/garrytan%2Fgstack%2Fplan-tune%2F@012a1309118277fc92249b2a54080a523a604424
Security Audit — socket — plan-tune