shadcn-ui
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill is coherent with its stated purpose: it provides guidance and tooling to discover, install, and customize shadcn/ui components in a project, using standard npm-based workflows and explicit local file management. There are no credential requirements or suspicious data exfiltration patterns described. The primary security considerations are the trustworthiness of the MCP registry sources and the potential for misconfiguration of registries or components, but nothing indicates malicious activity or inappropriate data handling. Overall, the footprint is benign and proportionate to its stated frontend tooling purpose.
Confidence: 98%
Audit Metadata