agent-release-manager

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The chosen report presents a thorough and cohesive depiction of an automated release-management workflow with multi-package coordination. It demonstrates realistic release orchestration, validation, and documentation steps. While no malicious payloads are evident, the workflow introduces moderate security risks primarily around secret management, access control, and sanitization of inputs used in dynamic commands. With proper secret handling, least-privilege permissions, and input validation, the approach is viable for secure release automation.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:25 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fagent-release-manager%2F@f6b06209b83c4f160126ef3e03309426ee299ae8