autonomous-workflow
Warn
Audited by Socket on May 17, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS: the skill's core behavior matches its stated purpose, but it materially increases risk through autonomous repository/GitHub actions and transitive installation of many companion skills and an optional agent. No clear credential theft or exfiltration is present, so this is better classified as a high-privilege, medium-risk orchestrator rather than malware.
Confidence: 86%Severity: 66%
Audit Metadata