docx
Warn
Audited by Socket on Apr 4, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
BENIGN in purpose and data flow, but HIGH security risk from the unverifiable vendored Validator.dll. The skill is internally consistent for DOCX work and shows no credential harvesting or external exfiltration, yet the binary validator is a black-box executable that materially raises supply-chain risk.
Confidence: 84%Severity: 78%
Audit Metadata