ralph-wiggum-loop
Warn
Audited by Socket on Apr 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s overall purpose is coherent for a workflow engine, but its footprint is broader than well-scoped guidance. The main concerns are unverifiable plugin/package provenance, transitive code execution through plugin registries, and broad access to secrets/config plus outbound integrations. No confirmed credential theft or overtly malicious endpoint is shown, so this is high vulnerability rather than confirmed malware.
Confidence: 84%Severity: 76%
Audit Metadata