create-pr

Fail

Audited by Socket on Mar 8, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill is coherently scoped to automate PR creation using standard git/gh workflows. It relies on existing local authentication for GitHub and does not introduce opaque downloads or credential harvesting. The primary security considerations are ensuring proper authentication handling, avoiding leakage of sensitive commit data in PR descriptions, and confirming user intent before pushing or creating PRs. Overall, the footprint is benign and proportionate to its stated purpose, with moderate security risks primarily around data exposure in PR descriptions and reliance on user authentication context.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 8, 2026, 03:30 AM
Package URL
pkg:socket/skills-sh/tartinerlabs%2Fskills%2Fcreate-pr%2F@33bccdf94e47257bc2853f80acf7435dd009d24c