qe-github-project-management

Fail

Audited by Socket on Feb 27, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill fragment is coherently aligned with its stated purpose of swarm-coordinated GitHub project management. There are no clear indicators of malicious behavior, credential harvesting, or data exfiltration. The primary risk area is operational: large-scale automated actions could disrupt workflows if misconfigured or abused, but this is a characteristic risk of automation tools rather than a sign of tampering. Recommend monitoring for proper permission scopes, ensuring per-action user consent for major changes, validating swarm tooling provenance before deployment, and replacing placeholder endpoints with restricted, vetted destinations in any production deployment.

Confidence: 92%
Audit Metadata
Analyzed At
Feb 27, 2026, 06:11 PM
Package URL
pkg:socket/skills-sh/proffesor-for-testing%2Fagentic-qe%2Fqe-github-project-management%2F@19b857fc9257d85bf1b97d362ca0f1c09a98e94c