codify-design-to-code
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: converting design data (skeleton, JSON) into code and downloading necessary assets within a controlled workflow. Data flows are predominantly local, with asset downloads and code generation, and there is no requirement for credentials or external exfiltration. Some minor surface risks exist around exposing localhost endpoints and ensuring asset downloads are from trusted sources with integrity checks, but these do not imply malicious behavior. Overall, the risk posture is benign to low for a development tool with proper access controls.
Confidence: 98%
Audit Metadata