product-changelog
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill describes a focused capability: producing well-structured product changelogs and release notes with optional visuals via the infsh CLI. Its footprint (documentation-driven content generation, standard CLI commands, no credential usage, no externally fetched sensitive data) is coherent with its stated purpose. Overall risk is low to moderate (benign), with no evident data exfiltration or credential handling. Monitor for any future additions that introduce file-system access beyond the intended content generation or links to external services.
Confidence: 98%
Audit Metadata