fix

Warn

Audited by Socket on Apr 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill’s core capabilities mostly match its stated bug-fixing purpose, and there is no clear credential harvesting or external exfiltration path. However, it is a high-impact operational skill: it instructs immediate execution, can modify code/docs/state, run tests, parse conversation-derived review content, delegate to sub-agents, and create commits with limited confirmation, which makes it medium risk despite generally coherent scope.

Confidence: 88%Severity: 56%
Audit Metadata
Analyzed At
Apr 16, 2026, 03:43 AM
Package URL
pkg:socket/skills-sh/tercel%2Fcode-forge%2Ffix%2F@2b581211b7761667e5f00bc49db45b6a4dc7dfdd