process-issues

Warn

Audited by Socket on Mar 24, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is purpose-aligned for GitHub workflow automation and uses official GitHub tooling, but its autonomous loop can execute real account-bound actions and act on untrusted GitHub content while modifying code. The main risk is autonomy and indirect prompt injection, not malware or credential theft.

Confidence: 89%Severity: 62%
Audit Metadata
Analyzed At
Mar 24, 2026, 03:40 AM
Package URL
pkg:socket/skills-sh/hifisaputra%2Fskills%2Fprocess-issues%2F@33457f6b650ba35ce1781739eec7eeab2b12fca0