submit-github-review

Fail

Audited by Socket on Mar 11, 2026

1 alert found:

Obfuscated File
Obfuscated FileHIGH
SKILL.md

The skill's footprint is coherent with its stated purpose: it aggregates findings and submits a GitHub pull request review via the official GitHub API without introducing unnecessary or suspicious data flows. Credential handling appears minimal and expected (GitHub token via MCP). Overall risk is low (benign) with normal surface for potential credential exposure only if tokens are mishandled outside the skill scope.

Confidence: 98%
Audit Metadata
Analyzed At
Mar 11, 2026, 10:47 AM
Package URL
pkg:socket/skills-sh/xinbenlv%2Fcodereview-skills%2Fsubmit-github-review%2F@d2ed16119ab8eb40424566e2d1f52b044fc35410