jeecg-codegen-new
Warn
Audited by Socket on Jun 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: The skill's purpose and capabilities mostly align for local Jeecg code generation, and data stays local without obvious exfiltration. The main concerns are unverifiable bundled jars/scripts, direct DB credential use via mysql CLI, broad project file modification, and reliance on another skill; these are moderate security risks rather than confirmed malicious behavior.
Confidence: 100%Severity: 60%
Audit Metadata