dkh
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's build/test/ship capabilities fit its stated purpose, but its footprint is high-risk because it relies on an external dkod service with API-key access and enables fully autonomous code landing and PR actions without per-action approval. The main concern is excessive autonomy and third-party trust, not confirmed malware.
Confidence: 82%Severity: 78%
Audit Metadata