npm-docs

Fail

Audited by Snyk on Jul 16, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E005: Suspicious download URL detected in skill instructions.

  • Suspicious download URL detected (high risk: 0.80). These URLs include unknown/private registries and arbitrary tarball/git endpoints (external hosts like example.com and user@hostname git URLs) which are not official/npm-controlled sources and can be used to distribute unverified packages or executables, so they present elevated risk for malware distribution.

Issues (1)

E005
CRITICAL

Suspicious download URL detected in skill instructions.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jul 16, 2026, 01:44 PM
Issues
1
Security Audit — snyk — npm-docs