nextjs-tinacms
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill footprint is coherent with its stated purpose of scaffolding and integrating TinaCMS with Next.js. There are no evident malicious patterns, unverifiable binaries, or data exfiltration paths. The main security considerations relate to standard credential handling in deployment (environment variables) and access control for the admin UI. Overall risk is low to moderate due to the potential expansion of attack surface when self-hosting and integrating multiple providers, but no active credential harvesting, external data sinks, or supply-chain concerns are evident from the provided content.
Confidence: 98%
Audit Metadata