ln-711-npm-upgrader
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileThe skill's footprint is coherent with its purpose: it defines a structured, multi-phase dependency upgrade and migration workflow with security auditing and rollback capabilities. There is a prudent emphasis on lockfile presence, peer/dependency prioritization, and migration guidance from established sources. Data flows to external migration tooling are reasonable within a controlled upgrade process, and there are rollback mechanisms if builds fail. No explicit credential access or data exfiltration patterns are evident. Overall, the design is benign but includes external-data-driven transformations that warrant careful monitoring of migration guide quality; treat as SUSPICIOUS only if guides prove misleading or if external tooling introduces unintended changes without validation.