swe-orchestrator
Warn
Audited by Socket on Mar 10, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
Overall, the skill appears benign and aligned with its stated purpose of autonomous SDLC orchestration within a controlled issue-tracking workflow. It does not introduce suspicious download/execution patterns, credential handling, or external data exfiltration pathways based on the material provided. Security risk is low to moderate given reliance on trusted tooling and explicit guardrails, with no evident credential handling or third-party data forwarding. If implemented, ensure strictly scoped API access to issue trackers and PR systems, enforce per-subtask isolation, and maintain explicit user prompts for approval at MITM gates as described in the guardrails.
Confidence: 98%Severity: 25%
Audit Metadata