agent-dev-backend-api
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The improved assessment confirms that the skill aligns with a self-learning Backend API development agent, leveraging external pattern repositories and learning loops. While this supports rapid improvement and pattern reuse, it introduces notable data governance and exfiltration risks due to external memory/tooling interactions and persistent learning storage. The posture remains Suspicious-to-MODERATE due to data flows involving external services and potential leakage of task context. To elevate safety, implement explicit per-action consent prompts, data-minimization, clear data retention policies, and confirm trust boundaries for claude-flow interactions.
Confidence: 98%Severity: 75%
Audit Metadata