compiling-architecture

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s behavior largely matches its stated purpose of compiling architecture artifacts, and there is no evidence of credential theft or exfiltration. However, the core compiler repo and its local scripts are not provenance-verified in the skill text, and pip installs from requirements.txt lack stated integrity controls, creating a meaningful supply-chain risk.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
Apr 10, 2026, 11:46 AM
Package URL
pkg:socket/skills-sh/inetgas%2Farch-compiler%2Fcompiling-architecture%2F@464a163ffc98ba929d8c070e5a9fd7e1a65e1fac
Security Audit — socket — compiling-architecture