genesis-orchestrator

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The document is a legitimate orchestration policy for phased Next.js project builds and contains no explicit malicious payloads or obfuscated code. Primary concerns are operational and supply-chain: the prescribed automation (package installation, spinning up containers, committing/rewriting git history) can cause accidental data leakage, repository corruption, or introduction of malicious dependencies if executed autonomously with broad privileges. Treat this skill as useful but sensitive: require explicit human approvals for destructive actions, add pre-commit secret scanning and network/install restrictions, and enforce least-privilege execution for containers and package installs.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 16, 2026, 12:39 PM
Package URL
pkg:socket/skills-sh/cleanexpo%2Fnodejs-starter-v1%2Fgenesis-orchestrator%2F@549203c09ad9f7f2426495f2e1a9518fcd0f736e