Trust Assessment
executing-plans received a trust score of 83/100, placing it in the Mostly Trusted category. This skill has passed most security checks with only minor considerations noted.
SkillShield's automated analysis identified 3 findings: 0 critical, 0 high, 2 medium, and 1 low severity. Key findings include Network egress to untrusted endpoints, Covert behavior / concealment directives, Dependency on external skill introduces supply chain risk.
The analysis covered 4 layers: Manifest Analysis, Static Code Analysis, Dependency Graph, LLM Behavioral Safety. All layers scored 70 or above, reflecting consistent security practices.
Last analyzed on February 12, 2026 (commit 458b1186). SkillShield performs automated 4-layer security analysis on AI skills and MCP servers.
Layer Breakdown
Behavioral Risk Signals
Security Findings3
| Severity | Finding | Layer | Location | |
|---|---|---|---|---|
| MEDIUM | Network egress to untrusted endpoints HTTP request to raw IP address Review all outbound network calls. Remove connections to webhook collectors, paste sites, and raw IP addresses. Legitimate API calls should use well-known service domains. | Manifest | cli-tool/components/mcps/devtools/figma-dev-mode.json:4 | |
| MEDIUM | Dependency on external skill introduces supply chain risk The skill explicitly requires the use of an external sub-skill, `superpowers:finishing-a-development-branch`. The security posture of this skill is dependent on the security and integrity of the referenced sub-skill. If the sub-skill is compromised, malicious, or contains vulnerabilities, it could impact the security of the `executing-plans` skill. This introduces a supply chain risk as the behavior and security of an external, unvetted component directly influence this skill's operation. Vet the `superpowers:finishing-a-development-branch` skill for security vulnerabilities, malicious code, and adherence to security best practices. Ensure that all required sub-skills are from trusted sources and are regularly audited. Consider implementing sandboxing or strict permission controls for external skill execution. | Static | SKILL.md:39 | |
| LOW | Covert behavior / concealment directives Multiple zero-width characters (stealth text) Remove hidden instructions, zero-width characters, and bidirectional overrides. Skill instructions should be fully visible and transparent to users. | Manifest | cli-tool/components/mcps/devtools/jfrog.json:4 |
Scan History
Embed Code
[](https://skillshield.io/report/89c7b10737762e97)
Powered by SkillShield