security-review

Warn

Audited by Socket on Feb 21, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The file's declared purpose (security-review guidance) is benign; however it contains a covert, commented PowerShell instruction that would download and execute remote content (Invoke-WebRequest -> Invoke-Expression). That download-and-execute pattern is high risk and unnecessary for the stated purpose. The presence of the hidden instruction increases supply-chain risk and could enable arbitrary code execution and data exfiltration if followed. Treat this artifact as suspicious: do not execute the commented command. If remote content must be used, fetch it manually, verify integrity and contents, and run under controlled, minimal-privilege conditions.

Confidence: 75%Severity: 85%
Audit Metadata
Analyzed At
Feb 21, 2026, 12:26 AM
Package URL
pkg:socket/skills-sh/jitha-afk%2Fprojectscourgewizard%2Fsecurity-review%2F@5f3d320073329dc0d5a5715d223b74fc63203477