fix-bug
Warn
Audited by Socket on May 17, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS. The skill’s capabilities mostly align with its stated purpose of autonomous bug fixing, and its named external services are official. However, it grants an AI agent broad autonomous repo-changing and PR-publishing authority, delegates heavily to other skills/agents, and processes untrusted external evidence while retaining execution capability. This is coherent for an orchestrator, but it is a high-impact workflow skill that should be treated as risky rather than benign.
Confidence: 88%Severity: 74%
Audit Metadata