ln-005-agent-reviewer

Warn

Audited by Socket on Mar 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill presents a coherent external-agent-based context review workflow with file-based data delivery. However, it introduces notable data-flow risks via sending potentially sensitive context to external services (codex-review, gemini-review) and persisting prompts/results locally. To improve security and governance, implement explicit data minimization, encryption in transit at API boundaries, explicit retention/cleanup policies for .agent-review artifacts, access controls, and audit logging. Ensure consent and data classification steps are defined for any context containing sensitive information. Treat as SUSPICIOUS-leaning toward BENIGN, with concrete controls required before deployment.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 2, 2026, 02:58 AM
Package URL
pkg:socket/skills-sh/levnikolaevich%2Fclaude-code-skills%2Fln-005-agent-reviewer%2F@11b34d163dff4b12d98124f4b58a1d67a551e29a