architect

Warn

Audited by Socket on May 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The skill's core codebase-analysis purpose mostly aligns with its file access and subagent use, but it is broader than a read-only architecture reviewer because it writes artifacts, commits, pushes, and invokes another skill. No explicit credential harvesting or third-party exfiltration is shown, but the unseen local helper script and transitive skill invocation add medium trust and execution risk.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
May 14, 2026, 01:44 PM
Package URL
pkg:socket/skills-sh/steveclarke%2Fdotfiles%2Farchitect%2F@ab23b3fbfa980ed435ea7cabda28867d956e5eb5
Security Audit — socket — architect