ship
Warn
Audited by Socket on Apr 5, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s overall purpose is coherent, but it grants an AI agent unusually broad autonomous control over a development workflow, including automatic commits and optional remote push/PR actions, while also chaining into other skills and external review services. The main risk is autonomy and trust expansion rather than clear malicious behavior.
Confidence: 89%Severity: 74%
Audit Metadata