tdd-execute-acpx

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s coding/TDD purpose matches its core behavior, but its footprint includes external routing of repository content to `acpx`/Codex, broad `--approve-all` execution, and a transitive reviewer skill. This is not confirmed malware, yet it carries meaningful supply-chain and data-export risk beyond a purely local TDD helper.

Confidence: 80%Severity: 58%
Audit Metadata
Analyzed At
Mar 30, 2026, 09:11 AM
Package URL
pkg:socket/skills-sh/knowlet%2Fclaude-acpx%2Ftdd-execute-acpx%2F@86e4752b1b2b9ba055c31cb5bb12199267d51253