nestjs-health-audit

Warn

Audited by Socket on Mar 25, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the stated purpose is a NestJS audit, but the skill goes beyond passive analysis by requiring hidden installer instructions and broad install/build/test execution over untrusted project code. The visible data flows are mostly coherent for an audit, yet the undisclosed tool-installer content, broad tool permissions, and command execution on arbitrary repositories raise medium-high security risk rather than clear malicious intent.

Confidence: 81%Severity: 72%
Audit Metadata
Analyzed At
Mar 25, 2026, 05:40 PM
Package URL
pkg:socket/skills-sh/somnio-software%2Ftechnology-tools%2Fnestjs-health-audit%2F@d3293e549ef481f52ee8e35dd49e0cf4a72df3be