drizzle-integration

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Drizzle integration skill appears benign and purpose-aligned. It describes standard developer tooling for setting up Drizzle ORM/Kit with PostgreSQL in a Next.js project, with emphasis on respecting existing project conventions and deterministic migrations. No evidence of unverifiable binaries, credential harvesting, or external data exfiltration patterns. The main risk is typical development-time exposure of DATABASE_URL and potential misconfiguration leading to accidental database writes; these are expected risks for such tooling and can be mitigated with proper environment handling and access controls.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 06:10 AM
Package URL
pkg:socket/skills-sh/comradesharf%2Fsembilan-skills%2Fdrizzle-integration%2F@7d3f7c6cc9e61571a8afbffb913c8a17c85ab9b9