doc-maintenance

Fail

Audited by Socket on Feb 24, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

No explicit malicious code or obfuscation found in the provided skill text. The primary security concern is design-level: instructions to send repository files and audit outputs to external subagents/models without mandated safeguards (redaction, allowlists, endpoint trust) creates a realistic data-exfiltration risk. The skill can be useful for documentation maintenance but should not be used against sensitive repositories unless the operator implements the recommended mitigations (audit script, restrict endpoints, redact sensitive files). Verdict: Functionally legitimate but operationally risky; require safeguards before use.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 24, 2026, 05:59 AM
Package URL
pkg:socket/skills-sh/nickcrew%2Fclaude-ctx-plugin%2Fdoc-maintenance%2F@94bf152025b4fb8cd6330ae6e096644ff721d199