forge-debugger

Warn

Audited by Socket on Apr 16, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

BENIGN for purpose/capability alignment and install trust: it uses Atlassian's official Forge CLI and official auth flow, and its actions fit Forge debugging. However, it is operationally high-risk because it explicitly empowers the agent to make code changes and perform deploy/install/upgrade actions without asking first, so the skill is best classified as a legitimate but high-impact automation skill rather than malware.

Confidence: 90%Severity: 71%
Audit Metadata
Analyzed At
Apr 16, 2026, 10:43 AM
Package URL
pkg:socket/skills-sh/atlassian%2Fforge-skills%2Fforge-debugger%2F@f339021085a2b2f2ca3a82fe8144e0a39a8469d0