dark-factory

Fail

Audited by Socket on Mar 10, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent, end-to-end autonomous workflow for implementing Jira-driven tasks. However, its high degree of autonomy without explicit user approvals, lack of explicit credential management details, and the involvement of multiple sub-skills create meaningful security and governance risks. It is classified as SUSPICIOUS: capable of legitimate automation but with potential for unintended actions and credential exposure. Recommend adding explicit safety gates (per-action approvals or abort mechanisms), documented credential handling, audit logging, and scoped permission models before deployment in a production environment.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 10, 2026, 01:26 AM
Package URL
pkg:socket/skills-sh/codemie-ai%2Fcodemie-code%2Fdark-factory%2F@5f1be1cb8c02dc62f4e5ab97301a73df108d3c70