worktree
Fail
Audited by Socket on Mar 7, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill logic is coherently aligned with its stated purpose of creating isolated Git worktrees with guided user interaction. Its data flows are predominantly local (repo inspection, env file handling, and worktree creation) and do not indicate unauthorized data transmission or risky supply-chain behavior. The primary risks are around local exposure of sensitive environment files if users choose to copy them into worktrees. Overall, the footprint is benign and proportionate to its Git-worktree automation purpose.
Confidence: 98%
Audit Metadata