setup-ralph

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Anomaly
AnomalyLOW
templates/loop.sh

This script is not overtly malicious: it orchestrates an AI-driven loop using the Claude CLI and can auto-commit and push workspace state to GitHub. Primary security risks are accidental data exfiltration and secret leakage: it reads an OAuth token and exports it for the claude CLI, uses --dangerously-skip-permissions, and (by default) can create and push a private GitHub repo containing the project. If the workspace or plan contains secrets, they may be sent to the Anthropic service or pushed to a remote repo. Recommend: treat backup push as opt-in (disable by default), avoid storing secrets in the workspace or plan files, ensure ~/.claude-oauth-token permissions are strict, and remove the --dangerously-skip-permissions flag unless fully understood.

Confidence: 90%Severity: 60%
Audit Metadata
Analyzed At
Mar 18, 2026, 03:49 PM
Package URL
pkg:socket/skills-sh/glittercowboy%2Ftaches-cc-resources%2Fsetup-ralph%2F@e34cb022556e6da7e9505475d401aef78e83f4bc