workflow-clean-code-angular

Warn

Audited by Socket on Apr 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s main purpose is plausible, but its footprint is broader than a pure Angular audit. The biggest risk is not malware or credential theft; it is an agentic review skill that can ingest untrusted repo content, spawn many subagents, edit code, run shell commands, and potentially commit changes, with optional auto mode and external MCP access.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
Apr 13, 2026, 02:24 PM
Package URL
pkg:socket/skills-sh/neogenz%2Fskills%2Fworkflow-clean-code-angular%2F@feda054108f3183d5e2cde345a359a8bc1efea2f
Security Audit — socket — workflow-clean-code-angular