suggest-awesome-github-copilot-prompts

Fail

Audited by Socket on Feb 25, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

Overall, the fragment represents a coherent, low-risk governance tool for maintaining a local prompts library with explicit user-controlled update steps. The primary risks are typical for any download/merge workflow (remote content integrity and accidental updates). With explicit user confirmation for updates and, ideally, content integrity checks, the security posture remains acceptable for this use case. The most important future hardening would be to add content integrity verification (e.g., checksums) and to lock down update actions behind per-prompt user consent.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 25, 2026, 05:30 AM
Package URL
pkg:socket/skills-sh/github%2Fawesome-copilot%2Fsuggest-awesome-github-copilot-prompts%2F@f1e6c907684cb1196064873344210d1ab1cd23d0