implement

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s capabilities are broadly aligned with its stated purpose, but it grants an AI agent substantial autonomous execution power: local command execution, optional package installation, Docker interaction, and iterative code modification based on potentially untrusted spec/repo content. There is no clear credential harvesting or exfiltration path, so this is not malicious, but it is a medium-risk automation skill.

Confidence: 86%Severity: 61%
Audit Metadata
Analyzed At
Apr 14, 2026, 09:31 AM
Package URL
pkg:socket/skills-sh/inkeep%2Fteam-skills%2Fimplement%2F@d2bc4a03efe9027c78e714458f7de996a6ab25cf