process-issues
Warn
Audited by Socket on Mar 24, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is purpose-aligned for GitHub workflow automation and uses official GitHub tooling, but its autonomous loop can execute real account-bound actions and act on untrusted GitHub content while modifying code. The main risk is autonomy and indirect prompt injection, not malware or credential theft.
Confidence: 89%Severity: 62%
Audit Metadata