rubycritic

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The RubyCritic integration as described is largely benign and proportionate to its stated goal of improving Ruby code quality. It relies on standard, reputable installation channels (RubyGems and Bundler) and produces local reports without evident external data leakage. The risk surface is primarily around potential shell execution patterns in the provided scripts and pre-commit hooks if inputs are not properly sanitized, but the documented use-case remains consistent with the purpose. Overall, classify as BENIGN with cautious monitoring for any unintended command execution or transitive installs.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 03:31 AM
Package URL
pkg:socket/skills-sh/el-feo%2Fai-context%2Frubycritic%2F@a2c4730beb3c5709cec4082713047208776bf0cf