web-design-guidelines

Warn

Audited by Socket on Feb 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

No malicious behavior observed in this skill definition. The functionality (fetching guidelines from a public GitHub raw URL and reading user-specified files to apply those rules) is consistent with the declared purpose. The only notable supply-chain risk is the runtime fetch of external rules: if the remote file is replaced by an attacker, the skill's behavior could be influenced. Recommend pinning the rules file to a specific commit or adding validation if strict immutability is required.

Confidence: 85%Severity: 15%
Audit Metadata
Analyzed At
Feb 16, 2026, 02:58 AM
Package URL
pkg:socket/skills-sh/jdrhyne%2Fagent-skills%2Fweb-design-guidelines%2F@3116f3e62dbd02b44a598b1aa690d2a8938e8f89