kf-g-github-pr-review-workflow
Warn
Audited by Socket on Aug 3, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The GitHub PR workflow purpose mostly matches the described actions, but the skill requires opaque local credential-adjacent bot scripts to perform networked GitHub writes, which is a disproportionate trust dependency. The custom scripts are unverifiable and likely use privileged GitHub App credentials, so the skill carries high security risk even without clear evidence of confirmed malware.
Confidence: 84%Severity: 82%
Audit Metadata