product-owner

Warn

Audited by Socket on Mar 2, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

This Product Owner skill is consistent with its stated purpose: it aggregates GitHub data, computes DORA and WSJF metrics, detects cross-repo dependencies, and optionally uses contextd for persistent memory. Primary risks are operational rather than explicitly malicious: the skill requires multiple service credentials (GitHub/MCP, contextd, Slack/Teams webhooks, Jira) and reads a local config file or directory for repo discovery. These legitimate capabilities increase the attack surface — misconfiguration, overly-broad tokens, or connecting to attacker-controlled webhooks/memory endpoints could lead to data exposure. There are no signs of obfuscation, embedded payloads, or download-and-execute instructions in the provided content. Recommended mitigations: restrict tokens to least privilege, require explicit user approval before posting to external channels or updating Jira, validate and sandbox contextd endpoints, and avoid reading arbitrary local files unless necessary and consented. Overall, I assess low probability of malware but a moderate security risk due to credential handling and external data flows.

Confidence: 80%Severity: 75%
Audit Metadata
Analyzed At
Mar 2, 2026, 06:43 PM
Package URL
pkg:socket/skills-sh/fyrsmithlabs%2Fmarketplace%2Fproduct-owner%2F@37b533a9434918ca8ed1557efd4fe9fc195766a0