ci-watchdog

Warn

Audited by Socket on May 13, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The GitHub-facing behavior is broadly aligned with the stated CI-monitoring purpose and uses official GitHub CLI flows, but the skill also authorizes an autonomous fix/commit/push loop and references an unverified `ci-watchdog` command with no established provenance. Main risk is autonomous repo modification and unclear install trust for the named helper CLI, not clear credential theft or exfiltration.

Confidence: 84%Severity: 68%
Audit Metadata
Analyzed At
May 13, 2026, 05:52 PM
Package URL
pkg:socket/skills-sh/latitude-dev%2Flatitude-llm%2Fci-watchdog%2F@7f5fe58538d59adabb41ef52d586efde52061e35