skills/dnyoussef/ai-chrome-extension/when-reviewing-pull-request-orchestrate-comprehensive-code-review/Socket
when-reviewing-pull-request-orchestrate-comprehensive-code-review
Warn
Audited by Socket on Apr 2, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose broadly matches code review orchestration, but its footprint is high-risk because it executes untrusted repository code, relies on an unpinned third-party orchestration package, and can autonomously modify or merge PRs. The main concern is unsafe automation and trust expansion rather than confirmed malware.
Confidence: 89%Severity: 76%
Audit Metadata