ticket-craft
Audited by Socket on Mar 9, 2026
1 alert found:
Obfuscated FileThe skill's footprint is coherent with its stated purpose: it defines a comprehensive, platform-agnostic ticket management workflow, leverages repository context, and interacts with PM systems to manage tickets through defined modes. There are no evident credential harvest or data-exfiltration patterns, and no risky download/execute behavior. The risk posture is primarily about legitimate automation of project management tasks, which is expected for this domain. Overall, the security posture is Benign to Suspicious (leaning Benign) given the absence of credential handling and external dependencies, but the explicit ability to write/read tickets across multiple PM tools warrants cautious permissioning in real deployments.