instantly-ci-integration

Fail

Audited by Socket on Mar 12, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint is coherent with its stated purpose: it sets up a GitHub Actions workflow to run Instantly CI tests using a supplied API key. The only notable risk is secret handling within CI logs; no suspicious downloads or credential forwarding to third-party code are evident. Overall, the approach is benign-to-moderately suspicious due to potential secret leakage risk if logs are not properly masked. No autonomous real-world actions or exfiltration channels are present.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 12, 2026, 01:31 AM
Package URL
pkg:socket/skills-sh/jeremylongshore%2Fclaude-code-plugins-plus-skills%2Finstantly-ci-integration%2F@365d922fd7bd0cd0bf5f7e925ab0d7818f6032ed