create-docker-skill

Warn

Audited by Socket on May 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core scaffolding purpose is plausible and mostly aligned, but the skill explicitly manufactures a security override to whitelist subprocess and network behavior, which is broader and less trustworthy than a normal template generator. Immediate data exfiltration is not evident, yet the skill is designed to reduce future security friction for container-executing skills and references an unclear audit-plugin.

Confidence: 100%Severity: 60%
Audit Metadata
Analyzed At
May 24, 2026, 08:28 AM
Package URL
pkg:socket/skills-sh/richfrem%2FProject_Sanctuary%2Fcreate-docker-skill%2F@8eb70c6482ac99ef04b75add6f7c299ed0772c15
Security Audit — socket — create-docker-skill