prisma-better-auth-nextjs

Warn

Audited by Socket on Feb 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The artifact appears to be a legitimate, comprehensive scaffold and guide for adding authentication to a Next.js app using Prisma and Better Auth. No direct indicators of deliberate malicious code are present in the supplied documentation. Primary risks are operational and supply-chain: executing remote tooling (npx, unreviewed Python scripts), mishandling high-value secrets, and misconfiguring deployment/proxy/logging which can expose credentials or PII. Recommended actions: pin and audit remote CLI packages before running, review any scaffold scripts before execution, store secrets in a dedicated secrets manager and use least-privilege credentials, validate audit-log sanitization and trusted proxy configuration, and restrict DIRECT_URL usage to trusted CI or migration tooling.

Confidence: 98%Severity: 75%
Audit Metadata
Analyzed At
Feb 25, 2026, 03:05 PM
Package URL
pkg:socket/skills-sh/Clownnvd%2Fclaude-code-skills%2Fprisma-better-auth-nextjs%2F@b52dc4e797e47f089d80df28d8a7899d904295c3