blueprint

Warn

Audited by Socket on May 20, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

BENIGN in purpose and scope: the skill is a planning workflow that mainly reads local specs/code and writes plan artifacts. The main concern is install/execution trust: it requires an unspecified external hoyeon-cli, so risk is elevated by unverifiable dependency rules despite no evidence of malicious data exfiltration or credential abuse.

Confidence: 79%Severity: 78%
Audit Metadata
Analyzed At
May 20, 2026, 01:32 PM
Package URL
pkg:socket/skills-sh/team-attention%2Fhoyeon%2Fblueprint%2F@ef963462abbf38b05b1558af0fac93e157edc74e
Security Audit — socket — blueprint