drizzle-integration
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The Drizzle integration skill appears benign and purpose-aligned. It describes standard developer tooling for setting up Drizzle ORM/Kit with PostgreSQL in a Next.js project, with emphasis on respecting existing project conventions and deterministic migrations. No evidence of unverifiable binaries, credential harvesting, or external data exfiltration patterns. The main risk is typical development-time exposure of DATABASE_URL and potential misconfiguration leading to accidental database writes; these are expected risks for such tooling and can be mitigated with proper environment handling and access controls.
Confidence: 98%
Audit Metadata