git-workflows
Fail
Audited by Socket on Mar 2, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The code fragment is a coherent, governance-focused workflow specification for agent-assisted Git workflows. It is internally consistent with its described purpose and does not contain active malware or exfiltration logic. The most notable risk stems from operational procedures (secret rotation, force-push history edits) that could be misused if automated without safeguards. Overall, the content is BENIGN with moderate security risk due to potential policy/ops misuse in automated contexts.
Confidence: 95%Severity: 90%
Audit Metadata