git-pr-workflows-git-workflow

Warn

Audited by Socket on Apr 14, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the stated purpose matches a git/PR workflow, and there is no explicit credential theft, malware payload, or third-party exfiltration path. Risk comes from opaque multi-agent orchestration and unspecified subagent/tool provenance, which make the execution trust boundary unclear and could permit autonomous repository actions depending on the host environment.

Confidence: 81%Severity: 52%
Audit Metadata
Analyzed At
Apr 14, 2026, 06:46 PM
Package URL
pkg:socket/skills-sh/sickn33%2Fantigravity-awesome-skills%2Fgit-pr-workflows-git-workflow%2F@908f3ec98b056133feb0224a80fca1d8d41da3df