abs-journal

Warn

Audited by Socket on Feb 16, 2026

3 alerts found:

Anomalyx3
AnomalyLOW
.claude/skills/openspec-continue-change/SKILL.md

[Skill Scanner] System prompt extraction attempt BENIGN: The fragment describes a coherent, permission-limited workflow for continuing OpenSpec changes, with explicit prompts, dependency reads, and one-artifact-per-invocation safeguards. No suspicious data flows or credential handling are present. LLM verification: This skill's documented behavior is consistent with its stated purpose: it lists changes, checks status, fetches artifact instructions, reads dependencies for context, and writes one artifact to the CLI-specified outputPath. I found no evidence of obfuscated code, hardcoded credentials, network exfiltration, or explicit malicious behavior in the skill text. Security concerns are operational: the skill requires local CLI and filesystem access and can read arbitrary dependency files returned by op

Confidence: 65%Severity: 50%
AnomalyLOW
.codex/skills/openspec-continue-change/SKILL.md

[Skill Scanner] System prompt extraction attempt BENIGN: The fragment describes a coherent, permission-limited workflow for continuing OpenSpec changes, with explicit prompts, dependency reads, and one-artifact-per-invocation safeguards. No suspicious data flows or credential handling are present. LLM verification: This skill's documented behavior is consistent with its stated purpose: it lists changes, checks status, fetches artifact instructions, reads dependencies for context, and writes one artifact to the CLI-specified outputPath. I found no evidence of obfuscated code, hardcoded credentials, network exfiltration, or explicit malicious behavior in the skill text. Security concerns are operational: the skill requires local CLI and filesystem access and can read arbitrary dependency files returned by op

Confidence: 65%Severity: 50%
AnomalyLOW
.opencode/skills/openspec-continue-change/SKILL.md

[Skill Scanner] System prompt extraction attempt BENIGN: The fragment describes a coherent, permission-limited workflow for continuing OpenSpec changes, with explicit prompts, dependency reads, and one-artifact-per-invocation safeguards. No suspicious data flows or credential handling are present. LLM verification: This skill's documented behavior is consistent with its stated purpose: it lists changes, checks status, fetches artifact instructions, reads dependencies for context, and writes one artifact to the CLI-specified outputPath. I found no evidence of obfuscated code, hardcoded credentials, network exfiltration, or explicit malicious behavior in the skill text. Security concerns are operational: the skill requires local CLI and filesystem access and can read arbitrary dependency files returned by op

Confidence: 65%Severity: 50%
Audit Metadata
Analyzed At
Feb 16, 2026, 09:35 AM
Package URL
pkg:socket/skills-sh/canyangliunian%2Fagent-skills%2Fabs-journal%2F@14be190ebc5b9c06f1800d0ad9b83c87e8ad8deb