security-audit

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The security-audit skill presents a coherent, purpose-aligned toolchain for codebase security assessment. Its footprint—using established audit tools, scanning for secrets, and producing remediation guidance—is proportionate to its stated goal. The only notable risk areas are ensuring redaction of any discovered secrets in reports and validating that any report delivery does not inadvertently expose sensitive data to unintended recipients. No unverifiable binaries or autonomous real-world actions are described, and data flows appear consistent with standard security-audit practices. Overall, the skill is BENIGN with medium-security risk considerations due to potential secret exposure in outputs if not properly mitigated.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 09:21 AM
Package URL
pkg:socket/skills-sh/TerminalSkills%2Fskills%2Fsecurity-audit%2F@2b5b0dd2c22075ada49e304037a7adb80ab1695f