dispatch-orchestration
Warn
Audited by Socket on Apr 6, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the skill's purpose broadly matches orchestration and issue execution, but its core capability depends on an unverified external CLI and enables high-impact autonomous actions such as executing tasks, committing changes, and opening PRs. The lack of provenance, install clarity, and endpoint/credential details makes the skill higher risk than a normal documentation-only guide, though there is no direct evidence of credential harvesting or confirmed malware in the provided text.
Confidence: 79%Severity: 76%
Audit Metadata