architecture-autopilot

Warn

Audited by Socket on May 7, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill's purpose is coherent, but it materially expands agent autonomy by orchestrating repo analysis, issue publication, and code implementation through multiple delegated skills and sub-agents. The biggest risks are transitive skill installation (`setup-matt-pocock-skills`), broad delegated execution trust, and autonomous action after minimal user confirmation; there is no clear evidence of credential theft or malicious exfiltration in this artifact alone.

Confidence: 83%Severity: 72%
Audit Metadata
Analyzed At
May 7, 2026, 08:50 AM
Package URL
pkg:socket/skills-sh/Gil-1%2Fskills%2Farchitecture-autopilot%2F@5ac16b7cf650216d6544633e6e17c3523eb7fa54
Security Audit — socket — architecture-autopilot