openspec
Fail
Audited by Socket on Mar 8, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The OpenSpec OPSX skill content is coherent with a purpose of guiding artifact-driven workflows and schema management. There are no evident dangerous data flows, credential handling, or download/execute patterns. Overall risk is low (benign) with respect to security threat modeling. However, given the general nature of CLI tooling, the skill should remain vigilant for future expansions that might introduce network calls, external installs, or credential usage.
Confidence: 98%
Audit Metadata