plan

Warn

Audited by Socket on Mar 30, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the visible skill is minimal and plausibly aligned with planning, but it mainly hands control to unprovided workflows and may pull external research content via Context7. No direct credential theft or overtly malicious behavior is shown, yet the transitive trust chain and unreviewable delegated behavior make it medium risk rather than benign.

Confidence: 79%Severity: 52%
Audit Metadata
Analyzed At
Mar 30, 2026, 01:22 AM
Package URL
pkg:socket/skills-sh/udecode%2Fbetter-convex%2Fplan%2F@eded56cd58971d5291a540c9d80f5c32525061e9