agkan-run-direct

Warn

Audited by Socket on Apr 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

The workflow is mostly coherent for task-driven development, but it depends on the `agkan` CLI without any verifiable publisher or install provenance in the skill. That unverifiable dependency, plus delegated execution through another skill file and direct branch mutation, makes this suspicious rather than clearly benign. No explicit credential harvesting or exfiltration is shown.

Confidence: 84%Severity: 72%
Audit Metadata
Analyzed At
Apr 8, 2026, 06:43 AM
Package URL
pkg:socket/skills-sh/gendosu%2Fagkan-skills%2Fagkan-run-direct%2F@1c9cfaf02780260907114707f0fe6758c40afc5d