context-engineering-advisor

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent, benign framework for diagnosing and addressing context stuffing vs. context engineering. Its footprint—interactive questioning, boundary ownership, memory architecture design, and implementation roadmaps—aligns with its stated purpose. No credential handling, download/execution chains, or data exfiltration vectors are evident. The风险 profile remains low to moderate due to potential for misapplication (e.g., misdefining boundaries or overengineering memory in real projects), but there is no intrinsic security risk from the skill itself. Recommend maintaining strict boundaries on data handling, ensuring templates do not embed sensitive company information, and validating ownership and retrieval policies with stakeholders to avoid unintended data leakage through artifacts like Context Manifests.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 12:54 AM
Package URL
pkg:socket/skills-sh/deanpeters%2FProduct-Manager-Skills%2Fcontext-engineering-advisor%2F@1c6e37afc9979cd2770fa7f89af2f6de57a2529e