context-mode-ops
Warn
Audited by Socket on May 28, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill’s purpose matches GitHub ops, but its footprint is overly powerful for an AI skill because it combines untrusted GitHub content ingestion with broad autonomous code, merge, release, and public-posting actions. Install provenance is mostly consistent and not overtly malicious, but the transitive trust model and autonomy level make this a high-risk operational skill rather than a benign helper.
Confidence: 89%Severity: 81%
Audit Metadata