ss-multi-repo-workflow
Warn
Audited by Socket on Aug 26, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill is internally consistent with a multi-repo orchestration purpose and shows no credential-harvesting or third-party exfiltration behavior, but it enables broad unattended code execution and PR-affecting actions across multiple repositories via nested delegated workflows. Risk is driven by blast radius and delegated execution power, not by malicious data flow.
Confidence: 87%Severity: 63%
Audit Metadata