req-plan-with-file

Warn

Audited by Socket on Feb 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The chosen report presents a solid, well-structured plan for an end-to-end req-plan workflow with phase-granularity, artifact generation, and an explicit quality gate. While functionally coherent, it requires hardening: sanitize inputs before constructing shell commands, implement strict validation of all payloads sent to external tools, add explicit access controls and encryption for sensitive artifacts, and provide sandboxing or safe-by-default configurations for external CLI calls. With these mitigations, the workflow can be deployed more securely while preserving its intended automation and traceability.

Confidence: 82%Severity: 75%
Audit Metadata
Analyzed At
Feb 26, 2026, 05:38 PM
Package URL
pkg:socket/skills-sh/catlog22%2Fclaude-code-workflow%2Freq-plan-with-file%2F@2457e3ffc19e1221ac2a1620479e61bfc430b1b1