agent-dev-backend-api

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The improved assessment confirms that the skill aligns with a self-learning Backend API development agent, leveraging external pattern repositories and learning loops. While this supports rapid improvement and pattern reuse, it introduces notable data governance and exfiltration risks due to external memory/tooling interactions and persistent learning storage. The posture remains Suspicious-to-MODERATE due to data flows involving external services and potential leakage of task context. To elevate safety, implement explicit per-action consent prompts, data-minimization, clear data retention policies, and confirm trust boundaries for claude-flow interactions.

Confidence: 98%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 04:35 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fagent-dev-backend-api%2F@05cc5ea89bd7198cffab9efc8e393a362deb40d6