code-review

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Overall, the code fragment describes a coherent, purpose-aligned workflow skill for orchestrating cross-platform code reviews. There are no embedded downloads, no hardcoded secrets, and authentication is delegated to dedicated platform skills. Data persistence for per-repo context introduces a potential local data exposure risk if filesystem permissions are lax, but this is a standard trade-off for stateful workflows. The footprint is proportionate to the stated purpose, with moderate risk stemming from local context storage and cross-skill data flows. Recommend benign with low-to-moderate risk pending careful access control to the local context file and auditing of platform skill data handling.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Feb 27, 2026, 09:06 AM
Package URL
pkg:socket/skills-sh/odyssey4me%2Fagent-skills%2Fcode-review%2F@1e7926b59bc4eef8ea76dcab1a342a46fb27412e