dev-server
Warn
Audited by Socket on Feb 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
This document is a benign developer guide for running and monitoring a project's local dev server and build watch. It references reading a local watch-status JSON file and running local scripts. There are no instructions to download or execute remote code, no credential collection or forwarding, and no external exfiltration. Operationally, accept the self-signed certificate requirement and audit any local scripts (external/ag-shared/scripts/watch/watch.js) before running, but based on the provided text there is no malicious behavior.
Confidence: 90%Severity: 75%
Audit Metadata