harness-creator

Warn

Audited by Socket on May 6, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is largely aligned with its stated purpose and keeps data flows local, but it has moderate security risk because it executes local build/lint targets, generates executable scripts, and performs an unverified transitive handoff to another skill. No clear credential harvesting, exfiltration endpoint, or malicious mismatch is present.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
May 6, 2026, 08:16 AM
Package URL
pkg:socket/skills-sh/L-yifan%2Fskills%2Fharness-creator%2F@7acffc05be9d271887a62f271f6b9d4d37d58a7d