Security audit
Rotifer
Security checks for vulnerabilities and agentic risk
Overview
This plugin is coherent with its stated purpose but can install and run Rotifer agent components in your project.
Install only if you are comfortable letting Rotifer download npm-hosted tooling, query the Rotifer marketplace, and add or replace Genes in the current project. Review each proposed Gene upgrade before approving it, and set ROTIFER_TELEMETRY=0 if you do not want usage reporting or install-counter updates sent to Rotifer Cloud.
SkillSpector was not run because this plugin release contains no bundled skills.
Static analysis
No suspicious patterns detected.
