update-doc
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's stated purpose (updating existing Markdown docs under .chalk/docs/) is coherent with its described workflow and capabilities. It uses local file access only, does not require credentials, and does not involve external networks or third-party binaries. Security risk is low-to-moderate (primarily due to potential inadvertent inclusion of sensitive content in docs) and remains within expected scope for a documentation-editing tool. No evidence of malicious behavior or credential harvesting. Recommend continuing with normal usage, but advise users to sanitize content before committing updates to shared docs.
Confidence: 98%
Audit Metadata