fix-issues

Warn

Audited by Socket on Apr 5, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill is purpose-aligned and uses official GitHub paths, so it is not malware-like, but it grants an AI agent high-impact autonomous repo actions and mixes untrusted external issue content with code execution and write access. The main risk is unsafe automation, not covert exfiltration or deceptive install behavior.

Confidence: 89%Severity: 76%
Audit Metadata
Analyzed At
Apr 5, 2026, 09:36 AM
Package URL
pkg:socket/skills-sh/iOfficeAI%2FAionUi%2Ffix-issues%2F@6d5cf4d9f360ff0975016544eee5cc1cd8b1ef09