context-mode-ops
Warn
Audited by Socket on Sep 14, 2026
1 alert found:
AnomalyAnomalyreview-pr.md
LOWAnomalyLOW
review-pr.md
The fragment describes a PR-review automation policy and does not itself contain malware or explicit data theft. Its main risks are operational: executing untrusted PR code during review, interpolating unvalidated values into shell commands, automatically merging despite failed checks or concerns, and pushing follow-up fixes directly to `next`. These practices should be constrained with strict input validation, isolated runners, least-privilege credentials, mandatory status checks, and reviewed follow-up changes.
Confidence: 97%Severity: 62%
Audit Metadata