policy-engine-builder

Fail

Audited by Socket on Mar 2, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill fragment is a benign, purpose-aligned policy-engine documentation guide. It coherently describes how to define and apply policy rules for Gemini CLI, including MCP server controls and mode-specific rules. There is no evidence of data exfiltration, credential handling, or autonomous real-world actions. Given its nature as documentation, it poses low security risk and is suitable for authors aiming to teach policy configuration.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Mar 2, 2026, 04:51 AM
Package URL
pkg:socket/skills-sh/melodic-software%2Fclaude-code-plugins%2Fpolicy-engine-builder%2F@51f5ca587fa13927731527a50234dca849b59ce5