prompt-history

Warn

Audited by Socket on Mar 31, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The overall workflow matches the stated purpose, and the skill includes strong guardrails against prompt injection and autonomous posting. The main concern is install/execution trust: it relies on a third-party personal GitHub CLI outside an official registry, so users must trust that binary/source and its dependency chain to process sensitive prompt history. No clear malicious or exfiltration behavior is described, but the external CLI dependency makes the skill medium-high risk.

Confidence: 86%Severity: 72%
Audit Metadata
Analyzed At
Mar 31, 2026, 04:38 AM
Package URL
pkg:socket/skills-sh/gutierrezje%2Fpromptex%2Fprompt-history%2F@1b18f3bc2cdd6a6af0a6adf1dffbf6b1fd736820