speckit-checklist

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The speckit-checklist skill exhibits coherent purpose-capability alignment, reasonable execution trust (local file IO, no external binaries), proportionate scope (reading feature docs, producing structured checklist items), and data flow integrity (generated checklists stored locally with traceable metadata). While the workflow involves dynamic questioning and mapping to spec sections, there is no indication of dangerous data exfiltration or credential handling. Overall, the footprint is benign and proportionate to its stated goal of validating requirements quality through unit-test-like questions.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 03:06 PM
Package URL
pkg:socket/skills-sh/h3y6e%2Fspeckit-skills%2Fspeckit-checklist%2F@de2a077cb649f0e4d147ba58cd3d4ebcfba9ea07