todo-resolve

Warn

Audited by Socket on Apr 2, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

Mostly coherent with its stated purpose, but it carries meaningful operational risk because it delegates work to child agents, performs autonomous commit/push actions, and loads another skill. No direct credential theft or suspicious third-party data routing is shown, so this is best classified as suspicious/high-vulnerability rather than malicious.

Confidence: 82%Severity: 61%
Audit Metadata
Analyzed At
Apr 2, 2026, 03:07 PM
Package URL
pkg:socket/skills-sh/marcusrbrown%2Fsystematic%2Ftodo-resolve%2F@887f31a04c0444a2fe783a5525afb0a4a811aef2
Security Audit — socket — todo-resolve