comet-design

Warn

Audited by Socket on May 29, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is mostly coherent for a design-workflow orchestrator, but it expands trust by mandating another skill, executing discovered local shell scripts, and auto-transitioning into the next phase. No clear credential theft or exfiltration is present, so this is better classified as a medium-risk workflow skill than malware.

Confidence: 86%Severity: 58%
Audit Metadata
Analyzed At
May 29, 2026, 11:24 AM
Package URL
pkg:socket/skills-sh/rpamis%2Fcomet%2Fcomet-design%2F@0aec37ee1737cf5fcaf8b2662f2e17b10cef5e43
Security Audit — socket — comet-design