tear-sheet
Warn
Audited by Socket on Feb 25, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
Overall, Report 2 presents a coherent and purpose-aligned view of a tear-sheet generator leveraging MCP data and docx-js with strong formatting enforcement. The workflow is plausible for production use, and the data path is clearly defined. However, there are notable risk signals around authentication/credential handling for MCP access, potential data leakage via intermediate files, and limited flexibility due to hard-coded formatting constraints. To improve the assessment, ensure explicit MCP credential flows, secure intermediate storage, and a mechanism to plumb audience-specific branding without sacrificing the core template integrity.
Confidence: 65%Severity: 55%
Audit Metadata