quality-retrospective

Warn

Audited by Socket on Apr 17, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is largely coherent for retrospective analysis and uses only local project data, with no obvious credential theft or external exfiltration. The main risks are transitive trust in an unverified helper skill, broad artifact ingestion that could carry prompt-injection content, and optional unattended routing/writes via `--auto-yes`.

Confidence: 82%Severity: 56%
Audit Metadata
Analyzed At
Apr 17, 2026, 01:15 AM
Package URL
pkg:socket/skills-sh/catlog22%2FMaestro-Flow%2Fquality-retrospective%2F@e489152c21eacde7dde61e2a5fbfa100ea5cbfbe