blueprint
Warn
Audited by Socket on May 20, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
BENIGN in purpose and scope: the skill is a planning workflow that mainly reads local specs/code and writes plan artifacts. The main concern is install/execution trust: it requires an unspecified external hoyeon-cli, so risk is elevated by unverifiable dependency rules despite no evidence of malicious data exfiltration or credential abuse.
Confidence: 79%Severity: 78%
Audit Metadata