rubycritic
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The RubyCritic integration as described is largely benign and proportionate to its stated goal of improving Ruby code quality. It relies on standard, reputable installation channels (RubyGems and Bundler) and produces local reports without evident external data leakage. The risk surface is primarily around potential shell execution patterns in the provided scripts and pre-commit hooks if inputs are not properly sanitized, but the documented use-case remains consistent with the purpose. Overall, classify as BENIGN with cautious monitoring for any unintended command execution or transitive installs.
Confidence: 98%
Audit Metadata