ios-workflow-executor
Warn
Audited by Socket on Mar 18, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill’s core QA purpose is coherent, and install/data-flow trust is mostly normal, but its operational scope is too broad and high-impact. It combines untrusted web research, autonomous code changes, test rewriting, git push, and PR creation, making it risky for an AI agent unless tightly gated by explicit user approval at each external or code-changing step.
Confidence: 91%Severity: 76%
Audit Metadata