bulk-github-star

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The reviewed code fragment aligns with its stated goal of bulk-starring a user’s public repositories via the official GitHub CLI. It maintains a clean separation between input data (username), actions (star each repo), and output (summary). The main risks are operational (rate-limiting, unintended bulk actions) rather than security/perimeter risks. A unified, safe usage pattern should include explicit user confirmation, consistent delay handling, and centralized error handling across both Bash and Node.js paths.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 04:37 AM
Package URL
pkg:socket/skills-sh/besoeasy%2Fopen-skills%2Fbulk-github-star%2F@7935b035aaa28c0ec0d7f39d18c6d6c939a9cc3a