code-refiner

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The code-refiner skill presents a coherent, safety-conscious workflow for local code analysis and refactoring across languages, with no evident credential handling, external data flows, or download/install of unverifiable binaries. Its stated restrictions (behavioral equivalence, maintainability, language idioms) align with a benign tool intended to improve code quality. Overall, the security posture is benign with respect to data exfiltration, credential exposure, and external dependencies. Consider maintaining a strict ban on downloading unverified binaries and ensure future iterations explicitly document any supported external tools or analyzers to preserve verifiability.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 07:13 PM
Package URL
pkg:socket/skills-sh/mathews-tom%2Fpraxis-skills%2Fcode-refiner%2F@a45cf8f615f137532f0f86a348126a065daeb259