cali-ops-github-releases
Warn
Audited by Socket on Jul 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
The skill is broadly aligned with GitHub release automation, but its footprint is more powerful than a normal helper: it tells the agent to act automatically, modifies the repo state, executes repo-configured shell commands with eval, and can run an unpinned third-party gh extension using GitHub auth context. This is better classified as suspicious/high-risk automation rather than malware.
Confidence: 91%Severity: 74%
Audit Metadata