commit
Warn
Audited by Socket on Oct 8, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: The skill's purpose and capabilities mostly align with a Git commit workflow, and the flagged command/pre-execution findings appear benign or false positives. However, it depends on unverifiable helper CLIs (`ai-commit`, `ai-coord`) that drive local commits, pushes, and reconciliation, so install trust is insufficiently established; this makes the skill high-risk despite coherent intent.
Confidence: 88%Severity: 74%
Audit Metadata