gitlab
Fail
Audited by Socket on Mar 12, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The GitLab Skill as described presents a coherent, purpose-aligned tool for MR review and fix orchestration using the glab CLI. It maintains appropriate scope with standard tooling, uses explicit workflows (MR Review vs MR Fix), and does not demonstrate insecure data flows or unverifiable binaries. While the workflow enables autonomous handoff to a fix team, it requires explicit intent from the user and stays within a controlled, auditable process. Overall, the skill appears benign with moderate risk primarily around data exposure in MR comments and proper authentication handling.
Confidence: 98%
Audit Metadata