skill-reviewer

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The analyzed skill, as described, is a benign organizational tool for auditing other skills. Its footprint is appropriately scoped for its stated purpose: it reads local skill documentation, applies structured checks, and outputs a report without performing external actions or handling secrets. Given the absence of download/install steps, credential access, or network data flows, the security posture is low-risk and proportionate to the task. The primary caution is to ensure that any future integration with external references or automated report publishing remains restricted to trusted sources and requires explicit user consent.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 12:20 PM
Package URL
pkg:socket/skills-sh/xzxiaoshan%2Fopen-agent-skills%2Fskill-reviewer%2F@092eee252920a8c07ccf1cf869c7d3d6cb2a8c9b