nx-ci-monitor

Warn

Audited by Socket on Feb 27, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

Overall, the code fragment describes a coherent, complex CI monitoring and self-healing workflow tightly scoped to Nx Cloud CI and a dedicated subagent. The capabilities align with the stated purpose, and the data flows are consistent with reading repository state, invoking subagents, and performing MCP calls and git operations. Several security-relevant considerations are present (credential management, secure MCP communications, and permissioned git actions), but no explicit malicious behavior is evident in the fragment. The approach emphasizes operational complexity and risk of misconfiguration rather than explicit malicious intent.

Confidence: 88%Severity: 75%
Audit Metadata
Analyzed At
Feb 27, 2026, 02:09 AM
Package URL
pkg:socket/skills-sh/tech-leads-club%2Fagent-skills%2Fnx-ci-monitor%2F@7c6464af6a363e54327f1ac43d4a68564d5608ea