pencil-mcp

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s purpose is mostly coherent with its capabilities, and data flows appear to match official Pencil/Claude behavior. The main concern is install/execution trust: Pencil MCP is a closed, locally running dependency that is not publicly auditable, which makes the skill higher risk than a normal documentation-only design guide. Secondary risk comes from processing arbitrary workspace content while also writing files, creating prompt-injection exposure during design-to-code and code-to-design tasks.

Confidence: 82%Severity: 72%
Audit Metadata
Analyzed At
Apr 2, 2026, 02:59 PM
Package URL
pkg:socket/skills-sh/guercheLE%2Fmy-skills%2Fpencil-mcp%2F@c64904058f015fe2ad9139bf8c83bfb8122067d6