prompt-engineering

Fail

Audited by Socket on Mar 7, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill focuses on prompt engineering pedagogy and practical CLI-driven workflows. Its footprint is coherent with its stated purpose, centering on prompting concepts and demonstrations rather than performing sensitive actions. The primary risk area is transitive installation of third-party tooling via npx, which requires trust in the external registries. Overall, the skill is BENIGN with MEDIUM risk due to potential dependency/install trust considerations; no credential handling or data exfiltration is evident. Maintain caution with external installations and ensure provenance/signatures are verifiable when using in production workflows.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 7, 2026, 12:12 PM
Package URL
pkg:socket/skills-sh/toolshell%2Fskills%2Fprompt-engineering%2F@2da9bd8c9248c52d479febdf142c4432a04c145d