oxlint
Fail
Audited by Socket on Mar 3, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The provided artifact is legitimate documentation for a linting tool and contains no explicit malicious code or backdoors. The primary security concern is supply-chain risk from executing packages fetched via npx and from installing optional plugins or migration tools without version pinning or integrity checks. Automatic fix and init/migrate features can modify repository files and should be used with review and proper safeguards. Treat usage as normal developer tooling but enforce standard supply-chain hygiene: pin versions, review third-party code, run in isolated environments or CI with controlled permissions, and back up or review changes before applying automatic fixes.
Confidence: 98%
Audit Metadata