journey-builder
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The core journey-building behavior is plausible, but the mandatory hard-coded gist fetch introduces high indirect prompt-injection risk, and the skill also exfiltrates troubleshooting content back to GitHub via gist edits. Official tooling lowers supply-chain concern, yet the external content dependency and broad autonomous write/commit scope make the skill higher-risk than its stated purpose requires.
Confidence: 89%Severity: 77%
Audit Metadata