parallel-worktrees
Warn
Audited by Socket on Jun 12, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
Mostly a benign workflow guide for git worktrees and PR coordination, but it includes a notable transitive-install trust issue: the published skill metadata points to Codervisor while setup installs a different repo (onsager-ai/dev-skills). Core git/GitHub capabilities are proportionate to the stated purpose, with moderate risk from third-party skill installation and externally visible GitHub actions.
Confidence: 100%Severity: 60%
Audit Metadata