plan

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill concept is coherent: it reads an issue, analyzes goals, surfaces 3 implementation options, collects user input, and writes a plan file. Data flows stay within local environment and the official gh CLI, with a clear boundary for user validation before changes are applied. There are no evident credential access, external data exfiltration, or unverifiable binaries. Overall risk is low-to-medium given its benign planning role, but attention to input sanitization and explicit user confirmation remains important to prevent injection or unintended edits.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 01:48 PM
Package URL
pkg:socket/skills-sh/tanabee%2Fskills%2Fplan%2F@12b03583d037df5730498b8e5449a4c8f8ce0313