fullstack-developer

Warn

Audited by Socket on Feb 15, 2026

1 alert found:

Anomaly
AnomalyLOW
REFERENCE.md

The codebase is a conventional full-stack pattern with authentication, user data access, and real-time features. Primary security concerns are token handling (localStorage storage and URL-based WebSocket authentication) and cache invalidation. No evidence of malware or backdoors. Recommended mitigations: avoid putting tokens in WebSocket URLs, prefer secure storage or httpOnly cookies, implement robust token rotation, validate and sanitize all WebSocket messages, and enforce server-side auditing for access to user data.

Confidence: 68%Severity: 60%
Audit Metadata
Analyzed At
Feb 15, 2026, 08:16 PM
Package URL
pkg:socket/skills-sh/404kidwiz%2Fclaude-supercode-skills%2Ffullstack-developer%2F@621b552efa8eaba752ae4933c2430ee319a5a91e