prompt-engineering
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill focuses on prompt engineering pedagogy and practical CLI-driven workflows. Its footprint is coherent with its stated purpose, centering on prompting concepts and demonstrations rather than performing sensitive actions. The primary risk area is transitive installation of third-party tooling via npx, which requires trust in the external registries. Overall, the skill is BENIGN with MEDIUM risk due to potential dependency/install trust considerations; no credential handling or data exfiltration is evident. Maintain caution with external installations and ensure provenance/signatures are verifiable when using in production workflows.
Confidence: 98%
Audit Metadata