github-issue-workflow

Fail

Audited by Socket on Feb 28, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

The skill fragment is purpose-aligned and functionally coherent for guiding GitHub issue resolution workflows with strong human-in-the-loop controls to mitigate untrusted content risks. It separates untrusted issue content from implementation, uses established tools (gh, git) and documented verification steps, and provides a clear process for branching, commits, and PRs. No malicious indicators detected within the provided fragment; the structure is proportionate to its stated governance-focused purpose. Overall security posture is Benign with Suspected-Governance-Strengthened risk controls; no credential exposure, data exfiltration, or autonomous actions identified.

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 28, 2026, 09:53 PM
Package URL
pkg:socket/skills-sh/giuseppe-trisciuoglio%2Fdeveloper-kit%2Fgithub-issue-workflow%2F@241e587a5b04412e4a3b5b42bab0238245667edc