ralph-upgrade
Fail
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill appears to be a legitimate upgrade adapter that coordinates upgrading a Ralph harness by pulling from a known external scaffold and applying a scripted migration while preserving user data. Risk is primarily around supply-chain trust of the external scaffold and the potential for unintended data modifications during migration. No credentials or data exfiltration patterns are evident. Overall risk is MEDIUM with attention to source authenticity and strict adherence to the upgrade guide.
Confidence: 98%
Audit Metadata