ruby-dependency-injection
Warn
Audited by Socket on Jun 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The main issue is purpose/install inconsistency: a Ruby DI skill tells users to install Ruby via pip, which does not match official Ruby distribution guidance and may point users to an unrelated third-party package. There is no evidence of credential theft or exfiltration, but the install path is not trustworthy for the stated purpose.
Confidence: 95%Severity: 52%
Audit Metadata