knip
Warn
Audited by Socket on Feb 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment is a well-structured, non-malicious instructional guide for using Knip to clean up a codebase. It adheres to a configuration-first philosophy and provides clear steps, safety considerations, and standard commands. The primary security consideration is the conventional supply-chain risk of pulling tooling from npm; this should be mitigated by verifying the package source and registry. Overall, the guidance is sound, with low to moderate risk depending on tool provenance and user review of fixes.
Confidence: 75%Severity: 75%
Audit Metadata