afkkit
Warn
Audited by Socket on Sep 2, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The workflow is internally coherent for an unattended GitHub issue-to-PR orchestrator, and its explicit gh usage is proportionate. However, it enables autonomous code changes and PR publication, depends heavily on unreviewed companion skills, and processes untrusted external content with execution/write capabilities, making the overall skill high risk even without clear malware indicators.
Confidence: 89%Severity: 76%
Audit Metadata