soia-meta-prompt-clarity

Warn

Audited by Socket on Aug 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill's core prompt-authoring behavior is coherent and it does not show credential theft or exfiltration. However, its installation model extends trust to a third-party skills repository and includes a wildcard-permission npx install path, which is broader than necessary for this purpose and creates medium supply-chain and transitive-trust risk.

Confidence: 89%Severity: 72%
Audit Metadata
Analyzed At
Aug 6, 2026, 08:03 AM
Package URL
pkg:socket/skills-sh/soia-team%2Fsoia-open-skills%2Fsoia-meta-prompt-clarity%2F@9d225e2f356c636587ef928f56ff395321ddfdab499af47b7158a444cd6c9b02
Security Audit — socket — soia-meta-prompt-clarity