herdr-issue-coordinator
Warn
Audited by Socket on Aug 16, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill is mostly coherent with its stated purpose as a GitHub/Herdr coordination workflow, and I found no clear credential-harvesting or covert exfiltration behavior. However, it enables autonomous code-writing and optional merging, and it combines untrusted GitHub content ingestion with agent execution/write capabilities, making it a high operational-risk skill even if not malicious.
Confidence: 84%Severity: 71%
Audit Metadata