addon-langchain-llm
Fail
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill appears purpose-aligned and proportionate: it intends to scaffold and configure LangChain-based LLM integrations across Python and Next.js ecosystems, with optional RAG and judge-evals coordination. Dependency sources are standard registries, and no obvious malicious data exfiltration or credential harvesting patterns are evident. The footprint is coherent with a developer-focused integration helper, not an autonomous agent action tool or external proxy. However, explicit data flow diagrams and sample security boundaries would strengthen assurance.
Confidence: 98%
Audit Metadata