github-multi-repo

Warn

Audited by Socket on Feb 28, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The github-multi-repo skill is coherent with its intended purpose of cross-repo orchestration and synchronization. It leverages standard tooling (GitHub CLI, npm, Git) and memory-backed state to coordinate across repositories. While the automation scope is broad and requires robust governance (RBAC, approvals, audit logging), there is no clear malicious behavior detected in the fragments. The risk is operational rather than malicious, stemming from mass updates and cross-repo changes.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 28, 2026, 10:53 AM
Package URL
pkg:socket/skills-sh/frankxai%2Farcanea%2Fgithub-multi-repo%2F@65aa88f51b0ced5dcd2435928bc1299d22cf517b