project-session-manager

Fail

Audited by Socket on Feb 21, 2026

1 alert found:

Malware
MalwareHIGH
SKILL.md

[Skill Scanner] Natural language instruction to download and install from URL detected This skill specification is coherent and consistent with its stated purpose: managing git worktrees and tmux sessions. I find no evidence of malicious code, credential harvesting, or untrusted download-and-execute patterns. The primary security consideration is operational: launching a third-party assistant (claude) inside a worktree grants that assistant access to repository files and any secrets therein — users should only run trusted assistants and avoid placing secrets in the worktree. Overall the fragment appears BENIGN but with a small operational risk related to executing third-party tooling in-session. LLM verification: The skill's described behavior is generally consistent with its stated purpose (managing git worktrees and tmux sessions). It requires and invokes external tools (gh, jira CLI, and a 'claude' client) which increases supply-chain and data-exfiltration risk because those tools will use the user's credentials and network access. The presence of automatic 'claude' launches in sessions and documented third-party installs (brew) are the main risk signals. No direct evidence of malicious code or creden

Confidence: 95%Severity: 90%
Audit Metadata
Analyzed At
Feb 21, 2026, 07:37 PM
Package URL
pkg:socket/skills-sh/yeachan-heo%2Foh-my-claudecode%2Fproject-session-manager%2F@1b85ab82768d3f14b4e8d02bb000bac04f83820e