create-docker-skill

Warn

Audited by Socket on Apr 3, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's core purpose is plausible, but it instructs creation of a blanket security override and execution of unreviewed local helper tools, increasing downstream execution and network scope beyond a simple scaffold generator. No direct credential theft or malicious exfiltration is evident, but the trust chain and override behavior make it medium risk.

Confidence: 84%Severity: 63%
Audit Metadata
Analyzed At
Apr 3, 2026, 06:08 PM
Package URL
pkg:socket/skills-sh/richfrem%2Fagent-plugins-skills%2Fcreate-docker-skill%2F@353db1f70fa8f3a58e251f36c393e373f2935c8b