contract-testing
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill content is coherently aligned with consumer-driven contract testing using Pact, including consumer/provider tests, matchers, broker publishing, and CI/CD integration. There are no evident drive-by downloads, unverifiable binaries, or credential harvesting patterns. Data flows involve standard secret-based authentication to a Pact Broker and deployment gates, which are appropriate for the described purpose. Overall risk is low-to-medium, largely due to external network endpoints and secret handling considerations, but nothing indicates malicious intent or misalignment with the stated goal.
Confidence: 98%
Audit Metadata