type-specimen

Warn

Audited by Socket on Aug 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS due to install-trust ambiguity rather than malicious behavior: the skill’s purpose, data flows, and permissions are mostly proportionate, and Google Fonts usage is official, but the core scripts/specimen executable is required and not verifiably sourced from the skill text. No credential harvesting or overt exfiltration is evident.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Aug 10, 2026, 09:33 PM
Package URL
pkg:socket/skills-sh/glebis%2Fhumane-agentic-design%2Ftype-specimen%2F@eb8c6693eb6aa3fc5cab78d84746bbdbe7dc924b156a3c52a5f139c50c00703d
Security Audit — socket — type-specimen