feedback-session

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The analyzed fragment describes a coherent, self-consistent workflow for collecting session feedback and generating GitHub issues with standard labels. There are no evident malicious actions, no hardcoded secrets, and no attempt to exfiltrate data. The main risk is reliance on GitHub API access via the gh CLI; in properly restricted environments, this is a legitimate automation pattern for feedback loops. Overall, the footprint is benign but warrants standard least-privilege and access-control safeguards to prevent abuse.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 27, 2026, 11:34 AM
Package URL
pkg:socket/skills-sh/laurigates%2Fclaude-plugins%2Ffeedback-session%2F@a849217549bea890e44f9227fefa61a382c8def5