coderabbit-hello-world
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill content is coherent with its stated purpose: it provides a minimal, well-scoped Hello World example for CodeRabbit integration, showing proper initialization with an API key and a first API call. There are no evident data exfiltration or privilege escalation patterns, no ambiguous download/execution chains, and dependencies are from a standard registry. The main security consideration is ensuring the API key remains secure (avoid logging the key, use restricted keys, and rotate as needed). Overall, the footprint is benign and proportionate to the stated goal.
Confidence: 98%
Audit Metadata