git-pr-workflows-git-workflow
Warn
Audited by Socket on Apr 14, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the stated purpose matches a git/PR workflow, and there is no explicit credential theft, malware payload, or third-party exfiltration path. Risk comes from opaque multi-agent orchestration and unspecified subagent/tool provenance, which make the execution trust boundary unclear and could permit autonomous repository actions depending on the host environment.
Confidence: 81%Severity: 52%
Audit Metadata