dspy-best-of-n
Warn
Audited by Socket on May 13, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The BestOfN guidance itself is mostly benign documentation, but the skill embeds transitive installation instructions that direct the agent to load other skills from a personal third-party repo. That behavior is not necessary for explaining DSPy BestOfN and introduces avoidable supply-chain and inherited-permissions risk. No direct credential theft or exfiltration is present in this skill alone.
Confidence: 91%Severity: 62%
Audit Metadata