Reckit is a coherent code-audit suite, but it asks agents to run, write, mutate, spawn workers, and sometimes commit code with weak consent boundaries and unsafe sandbox guidance.
Install only if you are comfortable with an audit skill that can execute project code and tooling, spawn workers, and write files under the repository. Use it in a sandbox or disposable worktree for untrusted projects, keep approval controls enabled, review the exact commands before running gates, and avoid the dashboard or sandbox-bypass guidance unless you understand the local exposure and privilege implications.