ralph
Warn
Audited by Socket on Mar 29, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill's core purpose broadly matches software-development automation, but its footprint is high-risk: persistent autonomous loops, reduced confirmation prompts, event hooks, Bash execution, and transitive skill installation from a third-party repository. The main concern is not obvious malware, but disproportionate autonomy and trust expansion beyond a simple specification-first helper.
Confidence: 85%Severity: 78%
Audit Metadata