bmad-synthesize

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The BMAD Synthesize specification is coherent, with well-defined inputs, modes, outputs, and integration points. The primary security considerations relate to runtime dependency management (external npm tool), integrity of 11 input docs, and ensuring proper validation of inferred content. The approach is acceptable for production if runtime checks, version pinning, and artifact verification are enforced.

Confidence: 98%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 02:42 AM
Package URL
pkg:socket/skills-sh/jschulte%2Fclaude-plugins%2Fbmad-synthesize%2F@2476075098de4718ceb4ef1f8e85f32fa07b8863