resolve-todo-parallel
Warn
Audited by Socket on Mar 22, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is broadly coherent for repo todo maintenance, and there is no clear credential harvesting or malicious exfiltration path. Risk comes from autonomous parallel subagents, transitive skill use, and automatic commit/push/delete actions based on untrusted todo content.
Confidence: 81%Severity: 62%
Audit Metadata