ralph-creator

Warn

Audited by Socket on Mar 3, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The specification is coherent for generating AFK loop scripts but introduces high-risk autonomous execution via an external, elevated-permission CLI in a loop. It poses notable security and privacy concerns (data in prompts, potential data exfiltration, indefinite background execution). Recommend adding explicit user-approval gates, bounded iterations, robust auditing/logging, sanitization of inputs, and a non-dangerous default mode with clear safety guards before enabling dangerous-permissions execution.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 3, 2026, 10:29 AM
Package URL
pkg:socket/skills-sh/jonmumm%2Fskills%2Fralph-creator%2F@d3f5397f32b8528b02caab1bac6efb9067503342