github-multi-repo
Warn
Audited by Socket on Feb 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The github-multi-repo skill is coherent with its intended purpose of cross-repo orchestration and synchronization. It leverages standard tooling (GitHub CLI, npm, Git) and memory-backed state to coordinate across repositories. While the automation scope is broad and requires robust governance (RBAC, approvals, audit logging), there is no clear malicious behavior detected in the fragments. The risk is operational rather than malicious, stemming from mass updates and cross-repo changes.
Confidence: 75%Severity: 75%
Audit Metadata