rp-reviewer

Warn

Audited by Socket on Apr 12, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill's purpose is coherent, but it has two notable risks: fail-open auto-approval that can bypass review, and sending untrusted diffs to an external MCP reviewer whose CLI provenance is not clearly verifiable from the provided evidence. It does not show clear credential theft or overtly malicious behavior.

Confidence: 83%Severity: 64%
Audit Metadata
Analyzed At
Apr 12, 2026, 07:18 AM
Package URL
pkg:socket/skills-sh/majesticlabs-dev%2Fmajestic-marketplace%2Frp-reviewer%2F@dba24396d2d9f06736d1333e23a80e9418b2270b