pre-land-refuters

Warn

Audited by Socket on Jun 23, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS: the skill is largely coherent for AI-assisted pre-merge validation and uses apparently official tooling, but it grants autonomous merge-governing behavior and routes repository context through external LLM CLIs while relying on unseen local scripts. Risk is elevated by unattended real-world actions and prompt-injection exposure rather than by clear malware or credential theft behavior.

Confidence: 84%Severity: 59%
Audit Metadata
Analyzed At
Jun 23, 2026, 08:57 AM
Package URL
pkg:socket/skills-sh/boshu2%2Fagentops%2Fpre-land-refuters%2F@7e92c599f632d62ac89c228e0c8a45bec158fa950c57f54e3666bd676bc4cb4f
Security Audit — socket — pre-land-refuters