quality-gate

Warn

Audited by Socket on May 12, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s core purpose is coherent for code review and refactoring, and it shows no clear credential theft or malicious exfiltration. The main risk is operational: it routes untrusted diff content through multiple reviewer agents/skills, then can auto-edit, commit, and push changes with limited user approval, while relying on unspecified sub-skill provenance.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
May 12, 2026, 05:03 PM
Package URL
pkg:socket/skills-sh/BenjaminG%2Fai-skills%2Fquality-gate%2F@8075d32d2485c7591c3fea74f4fe36397aa52126