code-review-intercepting

Warn

Audited by Socket on Apr 7, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The stated purpose matches a pre-commit review gate, and the visible git commands are normal, but the skill delegates trust to an unspecified `code-reviewer` agent with no provenance or install details. Automatic `git add .` also broadens impact by staging all files, so the overall footprint is somewhat larger than a minimal review interceptor.

Confidence: 86%Severity: 52%
Audit Metadata
Analyzed At
Apr 7, 2026, 03:17 AM
Package URL
pkg:socket/skills-sh/wizeline%2Fsdlc-agents%2Fcode-review-intercepting%2F@5e1a893fbe4a239445960865fde43b59a840f81c