autonomous-improvement-loop
Warn
Audited by Socket on Sep 23, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is internally consistent as an autonomous repo-maintenance loop, but its stated purpose is itself high risk because it enables unattended code modification and delivery actions over time. No clear credential theft, covert exfiltration, or malicious installer behavior is present; the main concerns are autonomous real-world actions and prompt-injection exposure from external comments/PR content.
Confidence: 90%Severity: 76%
Audit Metadata