rrr
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core retrospective behavior is coherent and mostly local, but the skill has an important trust inconsistency: it executes an unverifiable helper script from user/plugin skill directories in `--bg`, and it reads raw Claude session JSONL files that can contain sensitive context. No clear malware or exfiltration is shown, but the execution trust and transcript-access footprint exceed a clean low-risk documentation skill.
Confidence: 89%Severity: 72%
Audit Metadata