api-versioning

Warn

Audited by Socket on Feb 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

[Skill Scanner] Skill instructions include directives to hide actions from user All findings: [HIGH] autonomy_abuse: Skill instructions include directives to hide actions from user (BH009) [AITech 13.3] [HIGH] command_injection: Backtick command substitution detected (CI003) [AITech 9.1.4] Benign policy/documentation artifact. Strengths include clear versioning strategies, deprecation workflows, and risk awareness. Minor improvement could be adding concrete validation steps or automated checks to enforce versioning rules in CI/CD and example test cases for migration paths. LLM verification: The fragment is largely benign documentation for API versioning with no direct malware indicators. However, two anomalies (template-based code sample and a hidden-action directive) warrant sanitization and explicit labeling before reuse in a real toolchain. If implemented as guidance, ensure separation of documentation from executable samples, add clear disclaimers, and remove any directives that imply hiding actions from users. Overall risk remains moderate due to potential misinterpretation an

Confidence: 78%Severity: 75%
Audit Metadata
Analyzed At
Feb 16, 2026, 09:27 AM
Package URL
pkg:socket/skills-sh/yanko-belov%2Fcode-craft%2Fapi-versioning%2F@4ab05d6d8cf7cf18de8929e41b5e36b198ebbcb1