github-issue-workflow
Fail
Audited by Socket on Feb 28, 2026
1 alert found:
MalwareMalwareSKILL.md
HIGHMalwareHIGH
SKILL.md
The skill fragment is purpose-aligned and functionally coherent for guiding GitHub issue resolution workflows with strong human-in-the-loop controls to mitigate untrusted content risks. It separates untrusted issue content from implementation, uses established tools (gh, git) and documented verification steps, and provides a clear process for branching, commits, and PRs. No malicious indicators detected within the provided fragment; the structure is proportionate to its stated governance-focused purpose. Overall security posture is Benign with Suspected-Governance-Strengthened risk controls; no credential exposure, data exfiltration, or autonomous actions identified.
Confidence: 95%Severity: 90%
Audit Metadata