afk-workflow
Warn
Audited by Socket on Sep 13, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is purpose-aligned as an autonomous delivery workflow, but it meaningfully increases risk by enabling AFK code publication and by recommending transitive third-party skill installation. The `bd` dependency appears same-org and legitimate, so the main concerns are autonomous repo actions and inherited trust from companion skills rather than confirmed malware.
Confidence: 90%Severity: 72%
Audit Metadata