aris-auto-review-loop

Warn

Audited by Socket on May 6, 2026

1 alert found:

Security
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the core purpose is coherent, and the Codex dependency appears official, but the skill gives an agent broad autonomous exec/write powers, direct external model access to repo contents, SSH orchestration, and transitive skill execution. This is a high-risk automation skill rather than confirmed malware.

Confidence: 90%Severity: 78%
Audit Metadata
Analyzed At
May 6, 2026, 01:44 AM
Package URL
pkg:socket/skills-sh/OpenLAIR%2Fdr-claw%2Faris-auto-review-loop%2F@d23215bf6eb69023bc5ffb16d6db46c224622995
Security Audit — socket — aris-auto-review-loop