warden-sweep

Warn

Audited by Socket on May 16, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Mostly aligned with its stated code-review purpose, but it is high-impact automation: it scans all repo content, invokes subagents on untrusted code, writes files, pushes branches, and opens GitHub issues/PRs. This looks more risky than malicious; the main concerns are autonomous repository actions and prompt-injection exposure from full-repo processing, not credential theft or covert exfiltration.

Confidence: 87%Severity: 69%
Audit Metadata
Analyzed At
May 16, 2026, 03:44 AM
Package URL
pkg:socket/skills-sh/getsentry%2Fxcodebuildmcp%2Fwarden-sweep%2F@e43c41a820daeee7768f45d18357ca387408efcc
Security Audit — socket — warden-sweep