github-multi-repo

Warn

Audited by Socket on Mar 1, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The analyzed fragment portrays a legitimate, high-automation multi-repo orchestration capability. Its strengths lie in centralized governance and standard tooling usage; its risks derive from the potential for mass, unchecked changes across an organization. Recommended mitigations include granular scoping, dry-runs, approval gates, rigorous auditing, and explicit rollback strategies. Overall security risk remains moderate to high due to the blast-radius nature of cross-repo automation; malware likelihood remains low given the absence of embedded exfiltration or persistence mechanisms.

Confidence: 75%Severity: 75%
Audit Metadata
Analyzed At
Mar 1, 2026, 04:35 PM
Package URL
pkg:socket/skills-sh/ruvnet%2Fruflo%2Fgithub-multi-repo%2F@cfffdc518a4025c21c62e9c7368f0e103bdd0391