harness-drift-from-history

Warn

Audited by Socket on Jun 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill's stated purpose and capabilities mostly align: it is a Bash wrapper around audit-list, oia-audit, and audit-trend. The main concern is install/execution trust because npx may fetch and run the ruflo CLI at runtime, and the provided material does not verify publisher ownership or release provenance. With no credential grabs, no unrelated permissions, and no explicit exfiltration flow, this is better classified as suspicious supply-chain risk than malicious behavior.

Confidence: 79%Severity: 58%
Audit Metadata
Analyzed At
Jun 21, 2026, 04:12 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fclaude-flow%2Fharness-drift-from-history%2F@21b1adc098dd3833df76459179ea3c672a874dfb24f7b739c0a8ba9c8ed28aef
Security Audit — socket — harness-drift-from-history