recipe-front-build

Warn

Audited by Socket on Apr 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Suspicious. The skill's stated purpose matches frontend orchestration, but it enables autonomous git commits and relies heavily on unpinned external sub-agents via the Agent tool. No credential theft or direct exfiltration is evident, yet the transitive trust and autonomous action model make it medium risk.

Confidence: 86%Severity: 64%
Audit Metadata
Analyzed At
Apr 13, 2026, 07:10 AM
Package URL
pkg:socket/skills-sh/shinpr%2Fclaude-code-workflows%2Frecipe-front-build%2F@bdc2bee9fc6cba71c686788546eb62de94eabe13