debate-review

Warn

Audited by Socket on Aug 25, 2026

2 alerts found:

Anomalyx2
AnomalyLOW
SKILL.md

SUSPICIOUS: the core purpose is coherent for PR/MR review and data flows appear to use official GitHub/GitLab CLIs, but the skill depends on third-party delegate skills and encourages transitive skill installation. Its ability to post comments from the user's account is proportionate to purpose yet still a meaningful real-world action risk.

Confidence: 88%Severity: 64%
AnomalyLOW
scripts/lib/dispatch.mjs

No direct malicious payload is visible in this fragment; however, it performs dynamic discovery and execution of locally found delegate scripts (including via an environment-controlled directory) and reads untrusted JSON results produced by that executed code. The primary risk is supply-chain/local-plugin execution: if an attacker can influence DELEGATE_SKILLS_DIR or the searched skill directories or replace relay.mjs/config.mjs, arbitrary code execution is achievable. Additional issues are mainly robustness/trust-boundary related (brittle JSON extraction; probe execution via --help; limited validation of plugin selection beyond path existence).

Confidence: 66%Severity: 60%
Audit Metadata
Analyzed At
Aug 25, 2026, 09:21 PM
Package URL
pkg:socket/skills-sh/amelnagdy%2Freview-skills%2Fdebate-review%2F@b6afd5bdc8d742a3152f666a42b1fbc992da158df5da89ed4eb5a5b2499c224d
Security Audit — socket — debate-review