github-release-management
Warn
Audited by Socket on Mar 1, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The fragment presents a feature-rich and coherent release orchestration capability using established tooling. While highly capable, it introduces significant operational risk due to broad automation across multiple repos and external services. There is no evidence of malicious activity within the fragment itself, but strict secret management, per-action approvals, and governance are essential to mitigate potential misconfigurations or abuse in production. Overall assessment leans toward benign with moderate-high security risk due to the automation surface.
Confidence: 75%Severity: 75%
Audit Metadata