doc-maintenance
Fail
Audited by Socket on Feb 24, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
No explicit malicious code or obfuscation found in the provided skill text. The primary security concern is design-level: instructions to send repository files and audit outputs to external subagents/models without mandated safeguards (redaction, allowlists, endpoint trust) creates a realistic data-exfiltration risk. The skill can be useful for documentation maintenance but should not be used against sensitive repositories unless the operator implements the recommended mitigations (audit script, restrict endpoints, redact sensitive files). Verdict: Functionally legitimate but operationally risky; require safeguards before use.
Confidence: 98%
Audit Metadata