simplify-and-harden

Warn

Audited by Socket on Apr 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s stated purpose is coherent and its code-review behavior is proportionate, but it introduces medium risk through third-party skill installation and explicit cross-skill chaining to `self-improvement`. There is no clear credential theft or exfiltration, so this is not malware, but the transitive trust model and remote install pattern make it riskier than a purely local review skill.

Confidence: 83%Severity: 62%
Audit Metadata
Analyzed At
Apr 24, 2026, 03:31 AM
Package URL
pkg:socket/skills-sh/pskoett%2Fpskoett-ai-skills%2Fsimplify-and-harden%2F@2ad0ebb854934616e0b7289de029c4bb1c283655