← back to auditing-foundry-smart-contract-security

SkillMD Review · auditing-foundry-smart-contract-security

our safety review · skill by mukul975

WARNING

Fetches and executes code from a non-standard source. Runs static analyzers, symbolic execution, and fuzz tests; installs tools via curl|bash and pip; reads project files and writes reports.

reviewed 2026-07-16

What the verdicts mean

PASS

No risky instructions — documentation or standard, read-only development-tool usage.

CAUTION

Legitimate purpose with real capabilities (runs scripts, calls services, or handles credentials). Read the skill before installing.

WARNINGthis skill

Risky patterns beyond the skill's job — elevated privileges, config changes, or bypassed confirmations. Review carefully.

FAIL

Instructions a safe skill should never contain — injection, exfiltration, or destructive commands. Don't install unless you've verified the source.

INCONCLUSIVE

Could not be confidently assessed — treat as unreviewed and inspect the SKILL.md yourself.