reviewing-code

Fail

Audited by Socket on Feb 26, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill fragment is coherent with its stated purpose of guiding code review for PRs/branches and optionally leveraging external analysis tools for deeper insights. It does not demonstrate malicious behavior, credential access, or suspicious data flows. The footprint is proportionate to its goal, relying on standard developer tooling and public CLI interfaces. While reliance on external tools introduces potential fragility (synchronous execution assumptions, tool availability), this is not a security breach or exfiltration risk.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 26, 2026, 09:13 PM
Package URL
pkg:socket/skills-sh/tdhopper%2Fdotfiles2.0%2Freviewing-code%2F@e24cca848d3c3507605072781199dbcf6070f40c