docx

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The skill fragment effectively outlines a document-processing workflow for Word files with appropriate tooling and security considerations, indicating moderate risk primarily from external dependencies and handling of sensitive docx contents. To improve security posture, enforce dependency version pins, sandbox execution, access controls, and explicit consent for document access; also consider integrating integrity checks (hashes, signature verification) for all external tools and ensuring no sensitive intermediate artifacts leak to logs.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 11:49 AM
Package URL
pkg:socket/skills-sh/vibery-studio%2Ftemplates%2Fdocx%2F@336aaae0e24f327fd30ddcfefa39f0775606ef91