kw-skill-docs

Warn

Audited by Socket on May 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is mostly a local documentation helper, but it crosses a key line by instructing the agent to derive built-in skill details from the system prompt, creating hidden-instruction disclosure risk. Aside from that, it has low operational risk: no downloads, no external endpoints, and no credential handling.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 12, 2026, 11:24 AM
Package URL
pkg:socket/skills-sh/kwazema%2Fclaude-skills%2Fkw-skill-docs%2F@d693678eaf9c9fa2fa229650850acdf96c83cf82