execute-plan
Warn
Audited by Socket on May 18, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The core plan-execution behavior is coherent for the stated purpose and mostly local, but the skill grants broad file/command authority and explicitly hands off to an unspecified external git-commit skill, creating a meaningful transitive trust risk. Absent provenance for that downstream skill, this is not benign enough to classify as low risk, though it is not confirmed malicious.
Confidence: 83%Severity: 56%
Audit Metadata