forge-review
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The FORGE Reviewer Agent as described presents a coherent, self-contained workflow for adversarial artifact review with local memory logging. Its footprint is proportionate to its stated purpose, with no evident credential exposure, external network calls, or dubious install sources. The primary risk is reliance on local paths for loading personas and memory data; ensure access controls and path integrity in deployment to prevent tampering. Overall, the skill is benign with low security risk, suitable for its intended devil's-advocate review role.
Confidence: 98%
Audit Metadata