feature-implement

Warn

Audited by Socket on Mar 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill’s capabilities broadly match its stated implementation-orchestration purpose, and it does not show overt exfiltration, credential harvesting, or remote download behavior. The main risks are its broad write/exec/subagent powers, its reliance on unverifiable local ~/.claude/scripts helpers, and prompt-injection exposure from reading repo-controlled planning artifacts before taking action.

Confidence: 81%Severity: 62%
Audit Metadata
Analyzed At
Mar 29, 2026, 05:28 PM
Package URL
pkg:socket/skills-sh/notque%2Fclaude-code-toolkit%2Ffeature-implement%2F@528b9eab29339200b3e7b7d00468bd5a27c209e1
Security Audit — socket — feature-implement