cre-skills
Warn
Audited by Socket on Feb 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The asset is coherent and benign for CRE onboarding and reference tasks. The primary concern is the external content fetch cascade (WebFetch and curl) which, if not validated, could introduce supply-chain risk through tainted documentation. Recommend strict provenance checks, content integrity validation, and source pinning to known-good versions when possible. Overall, a solid, enterprise-friendly approach with medium security risk due to external content reliance.
Confidence: 75%Severity: 75%
Audit Metadata