custom-codereview-guide

Fail

Audited by Snyk on Jun 20, 2026

Risk Level: CRITICAL
Full Analysis

CRITICAL E006: Malicious code pattern detected in skill scripts.

  • Malicious code pattern detected (high risk: 0.90). This guideline creates an intentional approval bypass for dependency version-bump PRs—skipping full review, forbidding evidence, and requiring programmatic GitHub API APPROVE calls—which materially enables supply-chain abuse (malicious dependency versions merged without review) and thus poses high risk.

Issues (1)

E006
CRITICAL

Malicious code pattern detected in skill scripts.

Audit Metadata
Risk Level
CRITICAL
Analyzed
Jun 20, 2026, 02:38 AM
Issues
1
Security Audit — snyk — custom-codereview-guide