diffity-resolve-tree
Warn
Audited by Socket on Mar 25, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s behavior mostly matches its stated code-review purpose, but it depends on a not-clearly-verified external CLI and converts untrusted remote comments into code edits and remote actions. This looks more like a workflow skill with meaningful supply-chain and prompt-injection risk than outright malicious content.
Confidence: 81%Severity: 62%
Audit Metadata