git-delegation-management

Warn

Audited by Socket on Apr 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The core purpose is coherent—centralized git delegation with host credentials—but the implementation is overbroad: it tells the Manager to execute Worker-provided git commands literally, permits any git operation, and uses privileged host auth against potentially arbitrary remotes. Install trust is mostly normal, but the delegated-command and credential-backed network action model creates high abuse potential.

Confidence: 90%Severity: 84%
Audit Metadata
Analyzed At
Apr 6, 2026, 08:13 AM
Package URL
pkg:socket/skills-sh/agentscope-ai%2FHiClaw%2Fgit-delegation-management%2F@660d5038c227788dc2a9a960c4de83cb821d82ce