flow-next-plan

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s purpose and capabilities mostly align for planning, but it relies on an opaque bundled `flowctl` and can route repo-derived planning content to external review backends. This is not clearly malicious, yet the unverifiable local tool provenance and optional third-party review flow make the trust model weaker than a fully local, transparent planning skill.

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
May 13, 2026, 01:10 AM
Package URL
pkg:socket/skills-sh/gmickel%2Fflow-next%2Fflow-next-plan%2F@41a3986249d690d32349b7359228473cc77c40eb
Security Audit — socket — flow-next-plan