agent-repo-handoff-loop
Warn
Audited by Socket on Sep 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is broadly aligned with its stated purpose, but its footprint is large and highly autonomous. It can launch/resume agents, modify repos, push commits, read local agent state, and send outbound notifications with minimal human gating; install/provenance concerns are moderate rather than malicious, but the no-human-loop automation makes the overall skill high risk.
Confidence: 88%Severity: 76%
Audit Metadata