integration-analysis

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s core purpose is legitimate and mostly aligned with its capabilities, and the external tooling referenced is official GitHub CLI rather than an unverifiable downloader. The main risks are autonomous recursive repo discovery/cloning, broad local file access, and high indirect prompt-injection exposure from analyzing untrusted external repositories while writing outputs.

Confidence: 85%Severity: 66%
Audit Metadata
Analyzed At
Mar 29, 2026, 05:30 PM
Package URL
pkg:socket/skills-sh/jschulte%2Fclaude-plugins%2Fintegration-analysis%2F@e56024126bd3ff7dfa48ee1517107d6bea7d9a4e