critique
Warn
Audited by Socket on Apr 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s core purpose is coherent for design critique, and the external CLI appears same-publisher documented rather than overtly malicious. However, it introduces medium risk through unpinned `npx` execution, browser script injection from a local server, and especially transitive installation/use of another skill (`/impeccable`), which expands the trust boundary beyond this skill’s own instructions.
Confidence: 84%Severity: 64%
Audit Metadata