cdt

Warn

Audited by Socket on Apr 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s capabilities broadly align with its stated purpose as a multi-agent dev workflow, and the named external services mostly appear official. The main concerns are broad autonomous execution scope, untrusted web/document ingestion combined with write/exec powers, and some opaque dependency/config details (`.mcp.json`, optional third-party tools, possible extra skill/command chaining). No clear credential harvesting or incompatible data exfiltration is evident from the provided text.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Apr 20, 2026, 05:28 AM
Package URL
pkg:socket/skills-sh/rube-de%2Fcc-skills%2Fcdt%2F@86fae561b02503fa826eefc965e806297463a5f9