dev-task-queue

Warn

Audited by Socket on Mar 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the core task-queue behavior is coherent, but the skill asks the agent to trust a third-party personal GitHub repository and to read/export local Claude transcripts into a remotely synced git repo. This is not clearly malicious, yet it materially increases data exposure and warrants caution.

Confidence: 84%Severity: 62%
Audit Metadata
Analyzed At
Mar 14, 2026, 09:36 PM
Package URL
pkg:socket/skills-sh/MOlechowski%2Fagent-skills%2Fdev-task-queue%2F@62a7366b3425cd97e143d28432b4a93d28594d27