instantly-ci-integration
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: it sets up a GitHub Actions workflow to run Instantly CI tests using a supplied API key. The only notable risk is secret handling within CI logs; no suspicious downloads or credential forwarding to third-party code are evident. Overall, the approach is benign-to-moderately suspicious due to potential secret leakage risk if logs are not properly masked. No autonomous real-world actions or exfiltration channels are present.
Confidence: 98%
Audit Metadata