openspec-explore

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The openspec-explore skill presents a coherent, benign footprint: it is a non-implementing, discovery-focused assistant that reads context, explores codebases, and optionally captures design artifacts. There are no credential reads, no external downloads, and no data exfiltration patterns. The risk surface is minimal and proportional to its stated purpose of thinking-without-implementation. Maintain guardrails to ensure it does not auto-capture artifacts without user consent, but overall the footprint aligns well with its purpose as a thinking partner for exploration.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 10:26 PM
Package URL
pkg:socket/skills-sh/afterthought%2Fsaas-controller%2Fopenspec-explore%2F@1526500532b2482e01e6f6f71fb36075d7048544