ai-dev-loop

Warn

Audited by Socket on Apr 10, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill’s purpose is coherent, but it gives AI agents broad autonomous development authority and lets untrusted task/PRD content influence code-writing and command-capable workflows. There is no clear credential theft or exfiltration, yet the autonomy plus prompt-injection exposure makes this a medium-risk orchestration skill rather than benign documentation.

Confidence: 82%Severity: 58%
Audit Metadata
Analyzed At
Apr 10, 2026, 09:47 AM
Package URL
pkg:socket/skills-sh/shipshitdev%2Fskills%2Fai-dev-loop%2F@a790aca7f068ccea7efa021ec566fa25bcaa039c