api-documenter
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
BENIGN: The code fragment is a developer-oriented API documentation and SDK-generation toolkit manifest. It orchestrates standard OpenAPI tooling to validate, bundle, serve interactive docs, and generate SDKs from OpenAPI specs and code annotations. No credentials, secret handling, or unrelated system access is evidenced. Security posture is consistent with documented tooling usage; main risk is typical supply-chain risk from executing external tooling via npx or Docker, but nothing indicates active credential access or data exfiltration within the fragment itself.
Confidence: 75%Severity: 75%
Audit Metadata