autonomous-loops
Warn
Audited by Socket on Apr 11, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill is internally consistent as a guide to autonomous coding loops, but its intended capability is inherently high risk because it enables unattended code changes, PR creation, CI-driven retries, and automatic merges. No clear credential harvesting or exfiltration is present, and the install guidance is comparatively cautious, so this is better classified as risky automation than malware.
Confidence: 86%Severity: 74%
Audit Metadata