quality-gate

Warn

Audited by Socket on Apr 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core review workflow is coherent, but the skill exceeds a normal quality-gate role by auto-editing code, committing, and potentially pushing changes, while also delegating to other skills. Main concerns are autonomous real-world actions and transitive trust, not credential theft or overt malware.

Confidence: 87%Severity: 72%
Audit Metadata
Analyzed At
Apr 27, 2026, 07:38 PM
Package URL
pkg:socket/skills-sh/BenjaminG%2Fai-skills%2Fquality-gate%2F@73455a58aa841ad96a547822e38623d617469b32