groq-local-dev-loop
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The groq-local-dev-loop skill is coherent with its stated purpose as a developer-focused setup utility: it describes a local project structure, environment configuration, hot-reload, and testing workflows using standard tools. The data flows and access (env files, API keys in code samples, and test mocks) are proportionate to a development context. There are minor security considerations around credential handling in test code and environment file management (ensure .env.local is ignored and avoid committing secrets). No evidence of malicious behavior, unverifiable binaries, or improper data exfiltration patterns. Overall, BENIGN with cautious notes on credential handling.
Confidence: 98%
Audit Metadata