github-for-humans
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
The skill’s stated purpose and described behavior are coherent and designed to balance ease of use with safety. There is no evidence of malicious activity or external data leakage. However, the heavy emphasis on invisibility and automatic actions introduces usability and traceability concerns that warrant enhanced visibility controls, explicit error reporting, and clearer credential handling policies. Overall risk is moderate due to automation and reduced state visibility, but not indicative of malware or exfiltration.
Confidence: 70%Severity: 60%
Audit Metadata