skill-creator

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent, self-described meta-skill for creating and distributing other skills within Wegent. Its stated capabilities (guidance, scaffolding, packaging, export, publish) align with the described workflow. The footprint remains within a legitimate tooling and distribution scope, with the primary security considerations centered on token handling and secure backend communications. Overall, the skill is BENIGN with MEDIUM-low security risk due to credential/token exposure potential in environment variables, and standard supply-chain concerns around executable scripts, which are mitigated by hosted tooling and explicit user actions.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 04:37 AM
Package URL
pkg:socket/skills-sh/wecode-ai%2FWegent%2Fskill-creator%2F@7b1d6cd23a314bb891148a3eee5415dab5875b12