context-mode-ops

Warn

Audited by Socket on Sep 14, 2026

1 alert found:

Anomaly
AnomalyLOW
review-pr.md

The fragment describes a PR-review automation policy and does not itself contain malware or explicit data theft. Its main risks are operational: executing untrusted PR code during review, interpolating unvalidated values into shell commands, automatically merging despite failed checks or concerns, and pushing follow-up fixes directly to `next`. These practices should be constrained with strict input validation, isolated runners, least-privilege credentials, mandatory status checks, and reviewed follow-up changes.

Confidence: 97%Severity: 62%
Audit Metadata
Analyzed At
Sep 14, 2026, 07:46 PM
Package URL
pkg:socket/skills-sh/mksglu%2Fcontext-mode%2Fcontext-mode-ops%2F@7137ece9f0e46c012216965c39ee0050fca96b00d321f5a348e3dab87c2652a2
Security Audit — socket — context-mode-ops