repo-sync-steward
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill description is purpose-aligned and internally coherent: it deploys safe, standard SCM operations to synchronize content across repos with explicit path linters and validations. No suspicious data flows, credential handling, or external network activity is evident. While operationally sensitive (conflict resolution, correct remotes, and path mutations), these are expected in a cross-repo sync workflow and do not indicate malicious behavior or exfiltration. Overall risk is low with respect to security implications, and the behavior is proportionate to the stated purpose.
Confidence: 75%Severity: 75%
Audit Metadata