ralph-loop

Warn

Audited by Socket on Apr 26, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: The skill’s core purpose is coherent, but it enables autonomous code modification and git commits in a loop, which is high-impact for an agent skill. Risk comes mainly from autonomous real-world actions and an unspecified local runner script, not from credential theft or external data exfiltration in the provided text.

Confidence: 84%Severity: 71%
Audit Metadata
Analyzed At
Apr 26, 2026, 10:55 AM
Package URL
pkg:socket/skills-sh/joaquimscosta%2Farkhe-claude-plugins%2Fralph-loop%2F@d552823e24806ff4d75ce92276c66748ff9a3d1c
Security Audit — socket — ralph-loop