yolo
Fail
Audited by Socket on Feb 16, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The combined analyses describe a coherent, purpose-aligned browser-automation deployment skill with explicit fallbacks and testing. There is no clear malware or credential-harvesting behavior detected. The auto-deploy-after-push capability introduces deployment risk if misconfigured or if UI changes occur, and the reliance on a specific browser-extension increases maintenance and supply-chain risk. The evidence supports a mostly benign posture provided proper access controls, secure secret handling, and robust monitoring are enforced.
Confidence: 59%Severity: 60%
Audit Metadata