health-audit
Fail
Audited by Socket on Feb 25, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The health-audit skill is internally consistent with its stated purpose: it analyzes the project tech stack, compares against available plugins, and optionally updates the project configuration to reflect relevance. The data flows are limited to local filesystem state and built-in project metadata, with user-initiated changes guarded by a --fix workflow (backup and confirmation). No credential handling, external network calls, or destructive behavior beyond updating a local JSON config is evident. Overall, a benign, proportionate tool for supply-chain hygiene within Claude plugin management.
Confidence: 98%
Audit Metadata