speckit-checklist
Fail
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The speckit-checklist skill exhibits coherent purpose-capability alignment, reasonable execution trust (local file IO, no external binaries), proportionate scope (reading feature docs, producing structured checklist items), and data flow integrity (generated checklists stored locally with traceable metadata). While the workflow involves dynamic questioning and mapping to spec sections, there is no indication of dangerous data exfiltration or credential handling. Overall, the footprint is benign and proportionate to its stated goal of validating requirements quality through unit-test-like questions.
Confidence: 98%
Audit Metadata