coding-agent

Warn

Audited by Socket on Mar 18, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s purpose matches running coding-agent CLIs, but its footprint is high-risk. It combines shell execution, background control, untrusted PR content ingestion, and autonomous repo/GitHub actions; this is proportionate to an orchestrator skill but still dangerous and should be treated as high-risk automation rather than benign helper guidance.

Confidence: 86%Severity: 78%
Audit Metadata
Analyzed At
Mar 18, 2026, 10:19 PM
Package URL
pkg:socket/skills-sh/elizaos%2Feliza%2Fcoding-agent%2F@c55475ca42b082fe91533df24343e65e519c6543