NYC

commit-push-pr

Pass

Audited by Socket on Feb 15, 2026

Checks
Malicious behaviorInjection, exfiltration, untrusted installs
Security concernsCredential exposure, tool/trust exploitation
Code obfuscationHidden or obfuscated code
Suspicious patternsReconnaissance, excessive autonomy, resource use
Audit Metadata
Analyzed At
Feb 15, 2026, 08:37 PM
Package URL
pkg:socket/skills-sh/llama-farm%2Fllamafarm%2Fcommit-push-pr%2F@bc964a65e9acd9aa273f97b1dabe5c7097533653