qa-plan

Warn

Audited by Socket on Apr 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The core behavior is mostly coherent for a QA-planning skill: reading specs/code/diffs and writing a local plan file. The main risk comes from two design choices that exceed a purely local planner: loading an unverified secondary skill (/worldmodel) and ingesting untrusted PR/code content while still being able to write files. No direct credential harvesting, malware behavior, or deceptive exfiltration is present, but the transitive trust chain and prompt-injection surface make this higher risk than a simple documentation/planning skill.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Apr 29, 2026, 05:51 PM
Package URL
pkg:socket/skills-sh/inkeep%2Fteam-skills%2Fqa-plan%2F@8ed0742eeb03badb3111f456f9c5cfa5a0c8159b
Security Audit — socket — qa-plan