code-refiner
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The code-refiner skill presents a coherent, safety-conscious workflow for local code analysis and refactoring across languages, with no evident credential handling, external data flows, or download/install of unverifiable binaries. Its stated restrictions (behavioral equivalence, maintainability, language idioms) align with a benign tool intended to improve code quality. Overall, the security posture is benign with respect to data exfiltration, credential exposure, and external dependencies. Consider maintaining a strict ban on downloading unverified binaries and ensure future iterations explicitly document any supported external tools or analyzers to preserve verifiability.
Confidence: 98%
Audit Metadata