recipe-fullstack-build

Warn

Audited by Socket on Mar 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is coherent as a build orchestrator, but it expands trust through a referenced external skill and enables autonomous code changes and commits after one batch approval. No clear malware or credential theft appears, but the transitive trust and autonomous action model make it a medium-risk orchestration skill.

Confidence: 84%Severity: 58%
Audit Metadata
Analyzed At
Mar 13, 2026, 11:03 AM
Package URL
pkg:socket/skills-sh/shinpr%2Fclaude-code-workflows%2Frecipe-fullstack-build%2F@cc66cbaabbef9ba46c7d40b6888550facb1118ee