release-changelog
Fail
Audited by Socket on Mar 10, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill is a benign tooling guide for generating a stable release changelog. Its footprint is coherent with the stated purpose, relying on standard repository data (git, changesets, PRs) and producing a single markdown artifact. There are no exposed credentials, no untrusted binaries, and no data exfiltration pathways evident in the described workflow. The main operational dependency is the gh CLI, which is a known tooling surface; ensure proper authentication and least-privilege access to avoid runtime failures rather than security risks.
Confidence: 98%
Audit Metadata