typescript-security-review

Fail

Audited by Socket on Feb 28, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill fragment is internally coherent and aligned with its stated purpose of security auditing for TypeScript/Node.js codebases. There are no evident malicious behaviors, suspicious data flows, or credential exposures within the fragment itself. The primary consideration is ensuring secure and auditable delegation to the subordinate agent (typescript-security-expert) and enforcing strict data-handling policies when transferring code or findings between agents. Overall, the fragment should be considered BENIGN with manageable risk when deployed under proper access controls.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 28, 2026, 09:54 PM
Package URL
pkg:socket/skills-sh/giuseppe-trisciuoglio%2Fdeveloper-kit%2Ftypescript-security-review%2F@18f2968880899786cd44e59157747955069a126b