dogfood

Warn

Audited by Socket on Feb 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The code fragment describes a coherent, self-contained automated QA/dogfooding workflow that uses a browser automation tool to explore a web app, collect evidence (screenshots/videos), and generate a structured report. There are no indications of malicious behavior, credential harvesting, or data exfiltration beyond standard test artifacts. The capabilities, install/run model, and data flows are proportionate to the stated purpose. Overall, the fragment is BENIGN with MEDIUM-low security risk due to local artifact handling and the potential for accessing the target URL during testing, which is expected.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 28, 2026, 12:18 PM
Package URL
pkg:socket/skills-sh/workleap%2Fwl-squide%2Fdogfood%2F@ad41914e08b955060a80801619d6a36206187e9e