TanStack Start
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The TanStack Start Skill appears coherent with its stated purpose: it documents legitimate installation pathways, Cloudflare deployment patterns, and server-function/database integrations appropriate for full-stack React apps with SSR. While there are standard risk considerations around credential handling and potential exposure via bindings, nothing in the provided content indicates malicious exfiltration, unverifiable binaries, or disallowed autonomous actions. Overall, the footprint is proportionate and install/execution sources are trustworthy; the security posture is acceptable with cautious handling of secrets and adherence to best-practice secret management.
Confidence: 98%
Audit Metadata