initializing-projects
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's described purpose—generating a concise, project-specific CLAUDE.md and associated hooks based on local project metadata—is coherent and appropriate for its claimed intent. There are no evident patterns of credential access, remote exfiltration, or supply-chain risk in the described workflow. The security posture appears benign, with no external downloads or third-party tool invocations described. Overall risk is low to moderate (principled tooling for project maintenance), but as always monitor for future expansions that might introduce external dependencies or credential handling.
Confidence: 98%
Audit Metadata