watch-pr

Warn

Audited by Socket on Jul 8, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s purpose is coherent for GitHub PR automation, and its main network flows stay on official GitHub surfaces, but it is high-risk because it lets the agent autonomously modify code, commit, push, and respond to external review content while also invoking repo-local scripts and another skill. This is not confirmed malware, but it is a powerful automation skill with substantial autonomy and prompt-injection exposure.

Confidence: 85%Severity: 72%
Audit Metadata
Analyzed At
Jul 8, 2026, 04:17 AM
Package URL
pkg:socket/skills-sh/huggingface%2Fopenenv%2Fwatch-pr%2F@79f2675362085dd0842298702de026c14554e990d8b481158126c2f05c73a76d
Security Audit — socket — watch-pr