submit-github-review
Fail
Audited by Socket on Mar 11, 2026
1 alert found:
Obfuscated FileObfuscated FileSKILL.md
HIGHObfuscated FileHIGH
SKILL.md
The skill's footprint is coherent with its stated purpose: it aggregates findings and submits a GitHub pull request review via the official GitHub API without introducing unnecessary or suspicious data flows. Credential handling appears minimal and expected (GitHub token via MCP). Overall risk is low (benign) with normal surface for potential credential exposure only if tokens are mishandled outside the skill scope.
Confidence: 98%
Audit Metadata