AGENT LAB: SKILLS

tauri

Fail

Audited by Socket on Feb 15, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The SKILL.md file is a defensive, security-focused guide for Tauri applications. It provides correct and practical secure patterns (IPC validation, path canonicalization, origin checks, restrictive CSP, minimal capabilities, and signed updater usage). I found no malicious code or obfuscated payloads. The primary risks are operational: copying example updater endpoints or placeholder keys, or misconfiguring envPrefix/capabilities, could enable supply-chain or secret-leak vulnerabilities. With correct replacement of placeholders, proper key management, and standard dependency audits, the guidance is safe and helpful.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 15, 2026, 07:58 PM
Package URL
pkg:socket/skills-sh/martinholovsky%2Fclaude-skills-generator%2Ftauri%2F@d706d90cf835b7d3832564f0c676d6a917477755