treatment-plans

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

[Skill Scanner] Natural language instruction to download and install from URL detected All findings: [CRITICAL] command_injection: Natural language instruction to download and install from URL detected (CI009) [AITech 9.1.4] [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] Improved assessment: The report represents a benign, well-scoped capability for generating LaTeX-based treatment plans with HIPAA considerations and professional styling. The main operational risk lies in external dependencies and schematic generation tooling; these should be validated for provenance, access controls, and local execution to prevent PHI exposure. No evidence of malware or exfiltration within the fragment itself. LLM verification: No direct signs of malware or deliberate obfuscation were found in the provided documentation. The primary security concern is the mandatory use of an external 'scientific-schematics' AI skill (named 'Nano Banana Pro') with no provenance or data handling details; this creates a realistic supply-chain and PHI exfiltration risk when schematic generation occurs, especially if it is a remote service. Additionally, invoking example scripts without sandboxing or review risks arbitrary code execution.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 15, 2026, 08:05 PM
Package URL
pkg:socket/skills-sh/davila7%2Fclaude-code-templates%2Ftreatment-plans%2F@eb9d81e995f9e89d6561ce1c2ed535572d15ba9b