skill-web-research

Warn

Audited by Socket on Mar 4, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

benign and coherent with the described purpose. It implements a structured, multi-stage orchestration flow for web research tasks, using internal state management, postflight coordination, and a delegated subagent for actual research. There are no evident hardcoded secrets or direct external data exfiltration points in the provided fragment; the only potential concerns are trust boundaries around the subagent (Stage 5) and attribution in Stage 9, which should be managed by the deployment environment. Overall, the footprint is proportionate to its purpose and does not reveal malicious intent based on the shown content.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 4, 2026, 01:31 AM
Package URL
pkg:socket/skills-sh/benbrastmckie%2Fnvim%2Fskill-web-research%2F@30552f4a72dd446cdf37205467e8418dd4fe841f