brand

Warn

Audited by Socket on May 10, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The branding workflow is internally coherent and not overtly malicious, but it depends on an unverifiable external binary (`motif`) with unclear provenance and unspecified outbound data flow. That makes the skill high risk under the required scoring rules even though its file access and interactive behavior largely fit its stated purpose.

Confidence: 87%Severity: 78%
Audit Metadata
Analyzed At
May 10, 2026, 04:41 PM
Package URL
pkg:socket/skills-sh/howells%2Farc%2Fbrand%2F@589d80f3d1ac2f585d274c494d44a75c3c9ce7fc
Security Audit — socket — brand