isms-audit-expert

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS due to install-trust and transitive-skill risks, not because of confirmed malicious behavior. The publisher relationship appears coherent, but the documented use of mutable GitHub installer scripts and third-party npx skill-install CLIs creates medium supply-chain risk; without the actual SKILL.md, purpose-capability alignment and credential scope cannot be fully validated.

Confidence: 70%Severity: 58%
Audit Metadata
Analyzed At
Apr 12, 2026, 06:51 PM
Package URL
pkg:socket/skills-sh/alirezarezvani%2Fclaude-skills%2Fisms-audit-expert%2F@320246c8b0d369d3f7fcfa5dcdb81e3b932d7361