git-commit

Fail

Audited by Socket on Mar 9, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill presents a coherent, self-contained Git-centric automation workflow that matches its stated purpose: analyze changes, generate conventional commit messages (with optional emoji), decide on splitting, and handle local commit/push by default. The use of local Git commands minimizes external risk. The main security concern is the high degree of autonomy (auto-staging/committing/pushing) by default, which is mitigated by an audit mode and explicit flags. Overall, the footprint is benign and proportionate to its stated purpose, with moderate autonomy risk and low data/credential risk.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 9, 2026, 07:28 AM
Package URL
pkg:socket/skills-sh/huangwb8%2Fskills%2Fgit-commit%2F@dd3ef3733d4f5037455abd1cc231277814affaa8