execute

Warn

Audited by Socket on Apr 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is largely aligned with its stated purpose and shows no credential harvesting, exfiltration endpoint, or dubious installer behavior. The main risk is that it reads plan/template content and then grants subagents write/exec authority, creating meaningful indirect prompt-injection and autonomous repository-change risk, especially with auto-commit mode.

Confidence: 87%Severity: 58%
Audit Metadata
Analyzed At
Apr 13, 2026, 09:41 AM
Package URL
pkg:socket/skills-sh/gianchub%2Fclaude-plugins%2Fexecute%2F@7f66d976b696f58bf32711fef40efccaf203b452