spa-reverse-engineer
Audited by Socket on Feb 15, 2026
1 alert found:
AnomalyThe skill fragment is a high-risk toolkit for SPA reverse engineering, capable of extracting runtime state and intercepting network traffic. While it could be deployed for legitimate debugging and tooling, numerous capabilities (state-hook interception, request body logging, persistent payload storage, and targeted live-site interception) pose substantial privacy and security risks if misused or deployed without explicit user consent and safeguards. Recommend implementing strict consent prompts, scope-limiting defaults, data minimization, and robust auditing before use in production environments. Treat as SUSPICIOUS-to-UNRESTRICTED for general distribution; ensure governance controls if used in legitimate contexts.