excalidraw-diagram-generator

Fail

Audited by Socket on Feb 27, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The provided skill description and workflow are coherent and consistent with the stated purpose of generating Excalidraw diagrams. There is no evidence in this documentation of malicious code, credential harvesting, or suspicious outbound network behavior. The primary security consideration is supply-chain: the Python scripts referenced (not included here) are powerful enough to read/write local files and must be inspected before execution. Also, downloads of third-party .excalidrawlib files should be obtained from trusted sources and validated. Overall risk is modest and typical for a repository that includes file-manipulation scripts; verify the actual scripts before running them.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 27, 2026, 09:32 AM
Package URL
pkg:socket/skills-sh/tech-leads-club%2Fagent-skills%2Fexcalidraw-diagram-generator%2F@145b9ae90500c16ae03c64ae0cf9992490507b2e