dockerfile-gen
Warn
Audited by Socket on Mar 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is coherent, but the skill is essentially an instruction to run an unpinned external npm CLI with an API key and unclear outbound data handling. No clear evidence of malicious intent or unrelated capability appears in the provided text, but install-trust and data-flow transparency are insufficient.
Confidence: 71%Severity: 57%
Audit Metadata