baoyu-format-markdown

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The fragment describes a coherent, policy-compliant formatting workflow that operates on local files and delegates critical processing to a local script invoked via Bun. No direct malicious behavior is evident within the fragment. The main security considerations revolve around dependency sourcing and environment trust (Bun runtime, ${SKILL_DIR} contents). With proper dependency pinning and access controls, this workflow can be considered low to moderate risk for typical development use.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 01:07 AM
Package URL
pkg:socket/skills-sh/prettyhe%2Fbaoyu-skills%2Fbaoyu-format-markdown%2F@280862cb0e3f20cb07af7178d0d1b0e51a0a989b