prompt-engineering

Warn

Audited by Socket on Jun 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the content is mostly a benign prompt-engineering tutorial, but its actual footprint is centered on installing and using inference.sh/belt and additional skills. The main risks are transitive skill installation, mutable install sources, and credential/prompt forwarding through a third-party CLI that is broader than a simple guide requires.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
Jun 12, 2026, 10:27 PM
Package URL
pkg:socket/skills-sh/qu-skills%2Fskills%2Fprompt-engineering%2F@3028f0482f38efb1e8de6541dea478e8ff82d4f265d9ccf9cbd350dac2cce2a9
Security Audit — socket — prompt-engineering