git-delegation
Warn
Audited by Socket on Apr 6, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose is git delegation, but the actual mechanism lets the Worker ask the Manager to run arbitrary shell commands and then push results to remote repositories. The data flows are mostly consistent with internal collaboration, but the scope is broader and more powerful than the skill claims, creating meaningful execution and repo-action risk.
Confidence: 86%Severity: 62%
Audit Metadata