ralph-creator
Warn
Audited by Socket on Mar 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The specification is coherent for generating AFK loop scripts but introduces high-risk autonomous execution via an external, elevated-permission CLI in a loop. It poses notable security and privacy concerns (data in prompts, potential data exfiltration, indefinite background execution). Recommend adding explicit user-approval gates, bounded iterations, robust auditing/logging, sanitization of inputs, and a non-dangerous default mode with clear safety guards before enabling dangerous-permissions execution.
Confidence: 75%Severity: 75%
Audit Metadata