issue-sweep
Warn
Audited by Socket on Aug 15, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally coherent for autonomous GitHub issue sweeping, and its data flows stay mostly within GitHub/local repo boundaries. However, it grants an agent broad unattended authority over code, PRs, labels, comments, and issue closure while processing untrusted GitHub content and invoking other skills/scripts, so the overall security risk is high even without clear malicious intent.
Confidence: 89%Severity: 76%
Audit Metadata