plan-issue-codex

Warn

Audited by Socket on Apr 11, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Medium risk. The skill's purpose and capability are aligned, but it delegates all behavior to a third-party npm package fetched and executed at runtime with `@latest`, creating a real supply-chain trust issue without clear evidence of malicious intent.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Apr 11, 2026, 12:50 AM
Package URL
pkg:socket/skills-sh/WillBooster%2Fagent-skills%2Fplan-issue-codex%2F@dfaa374af32f612966b3638f65dbc4716fe586b8
Security Audit — socket — plan-issue-codex