coding-agent

Fail

Audited by Socket on Mar 20, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

SUSPICIOUS: the skill’s purpose is coherent, but it materially expands agent autonomy and external action scope. The biggest risks are autonomous code execution/posting and prompt-injection exposure from untrusted PR/repo content; install trust is only moderately concerning from the provided text alone.

Confidence: 83%Severity: 74%
Audit Metadata
Analyzed At
Mar 20, 2026, 11:14 AM
Package URL
pkg:socket/skills-sh/openclaw%2Fskills%2Fcoding-agent%2F@3d2c212ac8c47f77fa9408ea5a0398bc94425427