spec-kitty-sync-plugin
Warn
Audited by Socket on Apr 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: mostly coherent with a Spec-Kitty maintenance skill, but it has notable internal inconsistencies and a meaningful transitive-install risk. The official PyPI install path lowers concern, yet the misleading dependency claims, incorrect Python requirement, and ability to install all plugins into agent environments make the footprint broader and riskier than the description suggests.
Confidence: 85%Severity: 63%
Audit Metadata