looping-tasks
Warn
Audited by Socket on Mar 14, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's core purpose matches autonomous implementation loops, and its tooling/data flows are mostly coherent and same-org. However, default `--dangerously-skip-permissions`, repeated fresh-session automation, ingestion of untrusted repo content, and automatic `git push` create a high-risk autonomous workflow that can make and publish changes without per-step user approval.
Confidence: 91%Severity: 74%
Audit Metadata