lov-repo2docs

Warn

Audited by Socket on Sep 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core repo-to-docs capabilities are broadly aligned with the stated purpose, and the direct installs use official registries. The main risk comes from transitive delegation to a third-party deployment skill that can use Cloudflare credentials and perform external deployment/DNS actions; this is proportionate but expands trust beyond the reviewed skill.

Confidence: 86%Severity: 62%
Audit Metadata
Analyzed At
Sep 7, 2026, 10:08 PM
Package URL
pkg:socket/skills-sh/lovstudio%2Frepo2docs-skill%2Flov-repo2docs%2F@2f0b3566da6d49fdf600670782488c5139f29932
Security Audit — socket — lov-repo2docs