agent-execution-mode
Warn
Audited by Socket on Apr 27, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill’s workflow and repo-management behavior are broadly aligned with its purpose, and there is no direct malware or bundled installer chain. However, it enables autonomous GitHub review actions, delegated sub-agent execution, and external MCP-based data/credential flows with partially underspecified server provenance, creating meaningful medium-high security risk.
Confidence: 86%Severity: 68%
Audit Metadata