figma-to-code

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: The core Figma-to-code guidance is benign and well-aligned, but the skill unnecessarily encourages companion skill installation through a third-party repository. That transitive install behavior expands trust beyond the stated design-handoff purpose and is the main risk driver.

Confidence: 91%Severity: 56%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:17 PM
Package URL
pkg:socket/skills-sh/absolutelyskilled%2Fabsolutelyskilled%2Ffigma-to-code%2F@8139f63171e5856f3a6c8162b613cbfda3243236