refactor-prototype

Warn

Audited by Socket on Mar 25, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core local refactor behavior is mostly aligned with purpose, but the skill materially increases risk through autonomous execution, plan-defined command execution from local artifacts, and a transitive trust chain to external UI skills. No clear credential theft or exfiltration is present, so this is not malicious, but it is a medium-risk agent skill.

Confidence: 86%Severity: 61%
Audit Metadata
Analyzed At
Mar 25, 2026, 04:50 AM
Package URL
pkg:socket/skills-sh/quinteroac%2Fnerds-vibecoding-survivor-toolkit%2Frefactor-prototype%2F@ddf5eab73808262b3e625078f5c4fcec63d18429