gstack-workflow-assistant
Warn
Audited by Socket on Sep 12, 2026
1 alert found:
SecuritySecuritySKILL.md
MEDIUMSecurityMEDIUM
SKILL.md
SUSPICIOUS: the stated workflows are plausible, but the installation model is high-risk because it clones a third-party repo and immediately executes its setup script, with unclear publisher ownership and no included code for the setup or browser binary. The browser-cookie import and automation scope fit the purpose, but the install trust gap makes the skill risky to run.
Confidence: 88%Severity: 78%
Audit Metadata