lfg
Warn
Audited by Socket on Mar 27, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is mainly an orchestrator for other skills, but it hides most real behavior behind unverified slash-command dependencies and pushes a highly autonomous workflow through coding, review, browser testing, and PR/video steps. No direct malware or credential-harvesting logic is visible in this file, yet the transitive trust chain and broad autonomous action surface make the overall risk high.
Confidence: 80%Severity: 76%
Audit Metadata