autoresearch

Warn

Audited by Socket on Jul 7, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS. The skill’s capabilities broadly match its stated purpose, and there is no clear malware or supply-chain deception. The main risk is operational: it grants an AI agent an open-ended autonomous loop that executes shell commands, edits code, commits changes, and pushes to a remote without repeated user confirmation. That is coherent with the purpose but still high-impact and should be treated as a risky automation skill rather than benign.

Confidence: 89%Severity: 72%
Audit Metadata
Analyzed At
Jul 7, 2026, 12:19 AM
Package URL
pkg:socket/skills-sh/maragudk%2Ffabrik%2Fautoresearch%2F@f2b57962502093e8a724c0a9a2faa64861ec30e5b190e1dca358a6a1c5d072d9
Security Audit — socket — autoresearch