slfg

Warn

Audited by Socket on Mar 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill's purpose is coherent as an engineering workflow, but it is high-risk because it enables fully autonomous multi-step execution, parallel subagents, code mutation, browser actions, and PR/video updates with little user checkpointing. The main concern is not obvious malware, but broad delegated authority to other installed skills/plugins and real-world action sequencing without explicit per-step approval.

Confidence: 83%Severity: 78%
Audit Metadata
Analyzed At
Mar 28, 2026, 01:15 AM
Package URL
pkg:socket/skills-sh/EveryInc%2Fevery-marketplace%2Fslfg%2F@ce8a3c3b9672a985d950d61aaeb363dd497ce6e1