reflect

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The Reflect skill is coherently aligned with its stated purpose of capturing and persisting session learnings. Its footprint is proportionate: it uses standard, well-defined memory write pathways (Serena MCP or local git fallback) and requires explicit user consent for updates. There is no evidence of credential access, data exfiltration, or remote command execution. The security posture is benign with respect to data handling, and any potential risks are low and related to prompt shaping or memory dominance rather than malicious activity.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 02:42 AM
Package URL
pkg:socket/skills-sh/rjmurillo%2Fai-agents%2Freflect%2F@8be95b19e27cea6080dfc459da134bedd714c0f7