copy-command
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill describes a focused, harmless utility to copy command documentation from a Product Forge plugin cache into user or project Claude directories. It relies on local filesystem operations and a user-driven overwrite/rename flow. No credentials or external network calls are required, and the data flow is strictly local. The potential risks are primarily user data loss on overwrite and minor exposure of command documentation to the local environment, which is consistent with its stated purpose. Overall, the footprint is benign and proportionate to its described function.
Confidence: 98%
Audit Metadata