to-product
Warn
Audited by Socket on Jul 29, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s capabilities are aligned with an autonomous delivery orchestrator, but its scope is unusually broad and it is intentionally non-interactive, allowing the agent to make owner decisions, modify the repo, merge changes, and delete branches without per-action approval. No clear malware or credential-exfiltration behavior is shown, and install trust appears limited to local repo code plus Node, but the autonomous real-world action scope and transitive trust in many internal skills make this high risk.
Confidence: 92%Severity: 81%
Audit Metadata