coderabbit-resolver

Warn

Audited by Socket on May 20, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

The skill is mostly coherent with its stated GitHub/CodeRabbit automation purpose and uses official GitHub interfaces, but it carries meaningful risk because it authorizes autonomous merge/delete actions and defers critical logic to unseen local workflows/scripts. Overall this is better classified as suspicious/high-impact automation rather than malware.

Confidence: 82%Severity: 69%
Audit Metadata
Analyzed At
May 20, 2026, 03:23 PM
Package URL
pkg:socket/skills-sh/laststance%2Fskills%2Fcoderabbit-resolver%2F@e5bbe600e26eb37cd09caa1ef30b431a452ac152
Security Audit — socket — coderabbit-resolver