second-opinion
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The second-opinion skill is coherently scoped with its purpose: to surface additional perspectives on architectural, design, and code-review decisions. It relies on explicit user-triggered commands to fetch opinions from external or local models, without auto-downloading software, reading credentials, or exfiltrating data. Risks are low to moderate and primarily center on data being sent to external models by user choice; there is no evident credential handling or unauthorized actions. Overall, the footprint is benign and proportionate to its stated purpose, with a clear privacy note to prefer local/private evaluation when sensitive code exists.
Confidence: 98%
Audit Metadata