afk

Warn

Audited by Socket on May 16, 2026

2 alerts found:

Securityx2
SecurityMEDIUM
SKILL.md

SUSPICIOUS: the skill’s behavior is mostly aligned with its stated AFK orchestration purpose, but it grants an agent high-impact autonomous control over code, git history, and GitHub issue state. The biggest risks are autonomous real-world actions and prompt-injection from issue content feeding an agent that can edit, test, merge, push, and close issues.

Confidence: 88%Severity: 82%
SecurityMEDIUM
scripts/afk.sh

No direct evidence of credential theft, data exfiltration, obfuscation, or classic in-script malware is present in this Bash code. However, it executes an AI runner with explicitly high privilege (`codex ... --sandbox danger-full-access --dangerously-bypass-approvals-and-sandbox`) and then auto-merges/pushes changes to origin/main based on AI output and limited test scripts. This is a substantial security risk and a plausible sabotage vector if an attacker can influence issue content/prompts or if the runner is compromised. Review the governance of issue labeling, runner trust, and codex sandbox bypass carefully before using this in a sensitive environment.

Confidence: 63%Severity: 78%
Audit Metadata
Analyzed At
May 16, 2026, 05:35 PM
Package URL
pkg:socket/skills-sh/reddb-io%2Fred-skills%2Fafk%2F@061c7f9b3d8b5c426f2bf9b5261f2d5b7b7658c1
Security Audit — socket — afk