workflow-deployment
Warn
Audited by Socket on Apr 10, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated purpose fits deployment orchestration, but the skill is mostly a thin wrapper around opaque slash commands with unclear provenance and mandatory autonomous execution. The main risk is hidden downstream behavior and possible real-world deployment actions, not confirmed malware.
Confidence: 82%Severity: 71%
Audit Metadata