land-the-plane
Audited by Socket on Mar 4, 2026
1 alert found:
Obfuscated FileThe 'land-the-plane' instruction is operationally dangerous: it mandates mass staging and pushing of all local files, forbids discarding changes, enforces non-interactive conflict resolution by keeping everything, and requires completion of git push before stopping. These behaviors create high risk for accidental exfiltration of secrets, unintended repository changes, and supply-chain integrity issues. While not clearly malware, the policy effectively grants an automated agent privileged and destructive capabilities without adequate human-in-the-loop controls. Use of this skill in automated form should be prohibited or heavily restricted: require explicit file selection, secret scanning, interactive conflict resolution, and explicit push confirmation.