skill-structure-audit

Fail

Audited by Socket on Feb 16, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

No direct indicators of malware or intentional obfuscation were found in the provided specification. The primary security risk is operational: the tool's allowed actions (Bash + filesystem write/edit) can perform arbitrary local modifications and thus could disclose or corrupt sensitive files if misused or pointed at wrong targets. Mitigations (mandatory confirmations, dry-run by default, path restrictions, explicit logging) should be implemented before granting full privileges. With these controls, the skill is acceptable for its intended purpose as a project structure auditor and generator.

Confidence: 98%
Audit Metadata
Analyzed At
Feb 16, 2026, 01:25 PM
Package URL
pkg:socket/skills-sh/rj-yingjunjie%2Fskill-hub%2Fskill-structure-audit%2F@f83f83b1dd92202d74c148519523d5741499730e