recipe-review

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated purpose is coherent, but the skill introduces medium risk through unverified sub-agent dependencies and explicit transitive skill execution. There is no clear credential theft or exfiltration behavior, yet the write-capable workflow combined with indirect content ingestion and opaque agent provenance makes this unsafe to classify as fully benign.

Confidence: 84%Severity: 56%
Audit Metadata
Analyzed At
Apr 7, 2026, 07:36 PM
Package URL
pkg:socket/skills-sh/shinpr%2Fclaude-code-workflows%2Frecipe-review%2F@12bf25f7fb747aed623076081f68a7720c156b20